CVE-2024-5905: Palo Alto Networks Cortex Xdr Agent

Medium severity, CVSS 4.4. EPSS: 0.1% chance of exploitation in the next 30 days.

A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local low privileged Windows user to disrupt some functionality of the agent. However, they are not able to disrupt Cortex XDR agent protection mechanisms using this vulnerability.

Affected products

  • Palo Alto Networks Cortex Xdr Agent: from 7.9.0, before 7.9.102 (fixed in 7.9.102); from 8.1, before 8.1.2 (fixed in 8.1.2); from 8.2, before 8.2.1 (fixed in 8.2.1)

Published 2024-06-12. Last modified 2026-06-17.