An information exposure vulnerability in the Palo Alto...
High severity
Unreviewed
Published
Sep 12, 2025
to the GitHub Advisory Database
•
Updated Sep 12, 2025
Description
Published by the National Vulnerability Database
Sep 12, 2025
Published to the GitHub Advisory Database
Sep 12, 2025
Last updated
Sep 12, 2025
An information exposure vulnerability in the Palo Alto Networks User-ID Credential Agent (Windows-based) can expose the service account password under specific non-default configurations. This allows an unprivileged Domain User to escalate privileges by exploiting the account’s permissions. The impact varies by configuration:
References