Vulnerability Database

322,732

Total vulnerabilities in the database

CVE-2022-0031

A local privilege escalation (PE) vulnerability in the Palo Alto Networks Cortex XSOAR engine software running on a Linux operating system allows a local attacker with shell access to the engine to execute programs with elevated privileges.

  • Published: Nov 9, 2022
  • Updated: Nov 16, 2025
  • CVE: CVE-2022-0031
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 6.7
  • AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

CWEs:

Software From Fixed in
paloaltonetworks / cortex_xsoar 6.5.0-2102531 6.5.0-2102531.x
paloaltonetworks / cortex_xsoar 6.5.0-2410815 6.5.0-2410815.x
paloaltonetworks / cortex_xsoar 6.5.0-2583817 6.5.0-2583817.x
paloaltonetworks / cortex_xsoar 6.6.0-2585049 6.6.0-2585049.x
paloaltonetworks / cortex_xsoar 6.6.0-2889656 6.6.0-2889656.x
paloaltonetworks / cortex_xsoar 6.6.0-3049220 6.6.0-3049220.x
paloaltonetworks / cortex_xsoar 6.6.0-3124193 6.6.0-3124193.x
paloaltonetworks / cortex_xsoar 6.8.0-3261002 6.8.0-3261002.x