Privilege Escalation Vulnerability in Palo Alto Networks GlobalProtect App for Windows
CVE-2025-0120
What is CVE-2025-0120?
A privilege management flaw in Palo Alto Networks GlobalProtect app on Windows systems allows authenticated non-administrative users to escalate their privileges to NT AUTHORITY\SYSTEM. Although exploitation of this vulnerability requires the attacker to successfully carry out a race condition, it poses significant risks if leveraged. Users should ensure their systems are updated and patched as per vendor advisories to mitigate this threat.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
GlobalProtect App Windows 6.3.0 < 6.3.3
GlobalProtect App Windows 6.2.0 < 6.2.8
GlobalProtect App Windows 6.1.0
References
CVSS V4
Timeline
- ๐พ
Exploit known to exist
Vulnerability published
Vulnerability Reserved