CVE-2020-1988Medium

CVE-2020-1988 GlobalProtect App: Local privilege escalation due to an unquoted search path vulnerability

Published
April 8, 2020
Last Modified
April 8, 2020

🔗 CVE IDs covered (1)

📋 Description

An unquoted search path vulnerability in the Windows release of GlobalProtect App allows an authenticated local user with file creation privileges on the root of the OS disk (C:) or to Program Files directory to gain system privileges. This issue affects Palo Alto Networks GlobalProtect App 5.0 versions before 5.0.5; 4.1 versions before 4.1.13 on Windows;

🎯 Affected products1

  • GlobalProtect App

✅ Remediation

This issue is fixed in GlobalProtect App 5.0.5, GlobalProtect App 4.1.13 and all later versions. Workarounds and mitigations: Do not grant file creation privileges on the root of the OS disk (C:\) or 'Program Files' directory to unprivileged users.

🔗 References (1)