A problem with the network isolation mechanism of the Palo Alto Networks Cortex XDR Broker VM allows attackers unauthorized access to Docker containers from the host network used by Broker VM. This may allow access to read files sent for analysis and logs transmitted by the Cortex XDR Agent to the Cortex XDR server.
History

Wed, 12 Feb 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 12 Feb 2025 21:15:00 +0000

Type Values Removed Values Added
Description A problem with the network isolation mechanism of the Palo Alto Networks Cortex XDR Broker VM allows attackers unauthorized access to Docker containers from the host network used by Broker VM. This may allow access to read files sent for analysis and logs transmitted by the Cortex XDR Agent to the Cortex XDR server.
Title Cortex XDR Broker VM: Unauthorized Access to Broker VM Docker Containers
Weaknesses CWE-424
References
Metrics cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:P/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/AU:Y/R:U/V:C/RE:M/U:Amber'}


cve-icon MITRE

Status: PUBLISHED

Assigner: palo_alto

Published: 2025-02-12T21:05:08.795Z

Updated: 2025-02-12T21:22:17.666Z

Reserved: 2024-12-20T23:23:14.923Z

Link: CVE-2025-0113

cve-icon Vulnrichment

Updated: 2025-02-12T21:20:31.798Z

cve-icon NVD

Status : Received

Published: 2025-02-12T21:15:16.950

Modified: 2025-02-12T21:15:16.950

Link: CVE-2025-0113

cve-icon Redhat

No data.