Paloaltonetworks
Paloaltonetworks Prisma Access Agent: vulnerabilidades y CVE
Paloaltonetworks Prisma Access Agent tiene 14 vulnerabilidades publicadas, 14 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE14
Últimos 12 meses14
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-0306 | Media (5.8) | 0.10% | — | 10 sept 2026 | A vulnerability in the EndPoint Data Loss Prevention (DLP) enforcement of Palo Alto Networks Prisma® Access Agent enables a local user to bypass configured DLP policy enforcement controls and exfiltrate sensitive data.… |
| CVE-2026-0305 | Media (4.3) | 0.10% | — | 10 sept 2026 | An information disclosure vulnerability in the Palo Alto Networks Prisma® Access Agent on Linux enables a local user to access sensitive configuration data and credentials. The Prisma Access Agent on macOS, Windows,… |
| CVE-2026-0294 | Media (6) | 0.11% | — | 13 ago 2026 | A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma® Access Agent app on Windows and macOS devices enables a local user to execute code with elevated privileges. The Prisma Access Agent on Linux,… |
| CVE-2026-0293 | Media (5.6) | 0.11% | — | 13 ago 2026 | A vulnerability in Palo Alto Networks Prisma® Access Agent on Windows enables a local attacker with administrator privileges to bypass the anti-tamper protection, enabling unauthorized access to protected processes and… |
| CVE-2026-0292 | Baja (2.1) | 0.13% | — | 13 ago 2026 | An authentication bypass vulnerability in the network driver of Palo Alto Networks Prisma® Access Agent on Windows enables a local administrator to bypass security inspection, subsequently allowing them to inject and… |
| CVE-2026-0291 | Baja (1.1) | 0.11% | — | 13 ago 2026 | An improper link resolution before file access vulnerability exists in the Palo Alto Networks Prisma® Access Agent on Linux platforms that enables a local low privileged user to delete system files in a limited scope… |
| CVE-2026-0278 | Media (5.8) | 0.15% | — | 9 jul 2026 | Multiple protection mechanism failures in the Prisma Access Agent Data Loss Prevention (DLP) component for Windows allow a local user to bypass DLP policy enforcement controls. The Prisma Access Agent on macOS is not… |
| CVE-2026-0277 | Media (5.7) | 0.20% | — | 9 jul 2026 | An improper certificate validation vulnerability in the Prisma® Access Agent for iOS enables an attacker to perform a man-in-the-middle (MitM) attack to intercept VPN traffic. The Prisma Access Agent on Windows, macOS,… |
| CVE-2026-0271 | Media (5.9) | 0.11% | — | 10 jun 2026 | A privilege escalation (PE) vulnerability in the Palo Alto Networks Prisma Access Agent app on Linux devices enables a local user to execute code with elevated privileges. This does not impact Prisma Access Agent on… |
| CVE-2026-0268 | Media (4.4) | 0.10% | — | 10 jun 2026 | A security control bypass vulnerability in Prisma Access Agent for Linux allows a local attacker to route network traffic outside the VPN tunnel. This does not impact Prisma Access Agent on Windows, macOS, iOS, Android,… |
| CVE-2026-0248 | Media (6.2) | 0.19% | — | 13 may 2026 | An improper certificate validation vulnerability in the Prisma Access Agent® for Android and Chrome OS enables an attacker to perform a man-in-the-middle (MitM) attack to intercept VPN traffic. By presenting a… |
| CVE-2026-0247 | Media (5.9) | 0.15% | — | 13 may 2026 | Multiple authorization bypass vulnerabilities in the Endpoint DLP component of Prisma Access Agent® allow a local attacker to bypass authentication controls and execute privileged operations. |
| CVE-2026-0246 | Media (5.9) | 0.15% | — | 13 may 2026 | A vulnerability with a privilege management mechanism in the Palo Alto Networks Prisma Access Agent® enables a locally authenticated non-administrative user to escalate their privileges to root on macOS and Linux or NT… |
| CVE-2026-0245 | Media (4.3) | 0.14% | — | 13 may 2026 | Multiple information disclosure vulnerabilities in Prisma Access Agent® allow a local user to access sensitive configuration data and credentials. The Prisma Access Agent on Linux, ChromeOS, Android, and iOS are not… |