CVE-2025-0118

A vulnerability in the Palo Alto Networks GlobalProtect app on Windows allows a remote attacker to run ActiveX controls within the context of an authenticated Windows user. This enables the attacker to run commands as if they are a legitimate authenticated user. However, to exploit this vulnerability, the authenticated user must navigate to a malicious page during the GlobalProtect SAML login process on a Windows device. This issue does not apply to the GlobalProtect app on other (non-Windows) platforms.
CVSS

No CVSS.

Configurations

No configuration.

History

12 Mar 2025, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-12 19:15

Updated : 2025-03-12 19:15


NVD link : CVE-2025-0118

Mitre link : CVE-2025-0118

CVE.ORG link : CVE-2025-0118


JSON object : View

Products Affected

No product.

CWE
CWE-618

Exposed Unsafe ActiveX Method