CVE-2017-15870Medium

CVE-2017-15870 GlobalProtect App Vulnerability

Published
December 6, 2017
Last Modified
December 6, 2017

🔗 CVE IDs covered (1)

📋 Description

An "image path execution hijacking" vulnerability affects the Palo Alto Networks Global Protect Client. Exploitation of this issue requires the root privileges on the local station. An attacker could exploit this vulnerability to obtain a certain level of persistence on the compromised host. (ref # GPC-4401 / CVE-2017-15870) Successful exploitation requires local administrative privileges. This issue affects GlobalProtect App for macOS 4.0.2 and earlier

🎯 Affected products1

  • GlobalProtect App

✅ Remediation

GlobalProtect App for macOS 4.0.3 and later Workarounds and mitigations: N/A

🔗 References (1)