Loading
Generated remediation guidance and an executive summary. No account required.
A vulnerability with a privilege management mechanism in the Palo Alto Networks GlobalProtect™ app on Windows devices allows a locally authenticated non-administrative Windows user to escalate their privileges to NT AUTHORITY\SYSTEM. However, execution requires that the local user can also successfully exploit a race condition, which makes this vulnerability difficult to exploit.
Use CWE-250, Paloaltonetworks vendor hub and Globalprotect product page to widen CVE-2025-0120 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-4232, CVE-2024-3661 and CVE-2024-5921 for nearby disclosures in the same product family.