CVE-2024-5915: Palo Alto Networks Globalprotect

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

A privilege escalation (PE) vulnerability in the Palo Alto Networks GlobalProtect app on Windows devices enables a local user to execute programs with elevated privileges.

Affected products

  • Palo Alto Networks Globalprotect: from 5.1.0, up to and including 5.1.9; from 6.0.0, up to and including 6.0.6; from 6.1.0, before 6.1.5 (fixed in 6.1.5); from 6.2.0, before 6.2.4 (fixed in 6.2.4); version 6.3.0 only

Published 2024-08-14. Last modified 2026-06-17.