Vulnerabilities (CVE)

Filtered by vendor Paloaltonetworks Subscribe
Filtered by product Globalprotect
Total 43 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-17435 1 Paloaltonetworks 1 Globalprotect 2026-06-17 2.1 LOW 5.5 MEDIUM
A Local Privilege Escalation vulnerability exists in the GlobalProtect Agent for Windows 5.0.3 and earlier, and GlobalProtect Agent for Windows 4.1.12 and earlier, in which the auto-update feature can allow for modification of a GlobalProtect Agent MSI installer package on disk before installation.
CVE-2017-15870 1 Paloaltonetworks 1 Globalprotect 2026-06-17 7.2 HIGH 6.7 MEDIUM
Palo Alto Networks GlobalProtect Agent before 4.0.3 allows attackers with administration rights on the local station to gain SYSTEM privileges via vectors involving "image path execution hijacking."
CVE-2012-6606 1 Paloaltonetworks 2 Globalprotect, Netconnect 2026-06-16 5.8 MEDIUM N/A
Palo Alto Networks GlobalProtect before 1.1.7, and NetConnect, does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof portal servers and obtain sensitive information via a crafted certificate.