CVE-2022-0021Log File Information Exposure in Palo Alto Networks Globalprotect APP

Severity
5.5MEDIUMNVD
CNA3.3
EPSS
0.1%
top 83.97%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 10
Latest updateFeb 11

Description

An information exposure through log file vulnerability exists in the Palo Alto Networks GlobalProtect app on Windows that logs the cleartext credentials of the connecting GlobalProtect user when authenticating using Connect Before Logon feature. This issue impacts GlobalProtect App 5.2 versions earlier than 5.2.9 on Windows. This issue does not affect the GlobalProtect app on other platforms.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages3 packages

🔴Vulnerability Details

2
GHSA
GHSA-c8q6-g23p-58gh: An information exposure through log file vulnerability exists in the Palo Alto Networks GlobalProtect app on Windows that logs the cleartext credentia2022-02-11
CVEList
GlobalProtect App: Information Exposure Vulnerability When Using Connect Before Logon2022-02-10

📋Vendor Advisories

1
Palo Alto
GlobalProtect App: Information Exposure Vulnerability When Using Connect Before Logon2022-02-09
CVE-2022-0021 — Log File Information Exposure in Palo | cvebase