A local privilege escalation (PE) vulnerability in the Palo Alto Networks Cortex XSOAR engine software running on a Linux operating system allows a local attacker with shell access to the engine to execute programs with elevated privileges.
| Software | From | Fixed in |
|---|---|---|
| paloaltonetworks / cortex_xsoar | 6.5.0-2102531 | 6.5.0-2102531.x |
| paloaltonetworks / cortex_xsoar | 6.5.0-2410815 | 6.5.0-2410815.x |
| paloaltonetworks / cortex_xsoar | 6.5.0-2583817 | 6.5.0-2583817.x |
| paloaltonetworks / cortex_xsoar | 6.6.0-2585049 | 6.6.0-2585049.x |
| paloaltonetworks / cortex_xsoar | 6.6.0-2889656 | 6.6.0-2889656.x |
| paloaltonetworks / cortex_xsoar | 6.6.0-3049220 | 6.6.0-3049220.x |
| paloaltonetworks / cortex_xsoar | 6.6.0-3124193 | 6.6.0-3124193.x |
| paloaltonetworks / cortex_xsoar | 6.8.0-3261002 | 6.8.0-3261002.x |