A problem with the network isolation mechanism of the Palo Alto Networks Cortex XDR Broker VM allows attackers unauthorized access to Docker containers from the host network used by Broker VM. This may allow access to read files sent for analysis and logs transmitted by the Cortex XDR Agent to the Cortex XDR server.
History

Wed, 09 Apr 2025 17:45:00 +0000

Type Values Removed Values Added
References

Wed, 09 Apr 2025 16:30:00 +0000

Type Values Removed Values Added
References

Wed, 12 Feb 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 12 Feb 2025 21:15:00 +0000

Type Values Removed Values Added
Description A problem with the network isolation mechanism of the Palo Alto Networks Cortex XDR Broker VM allows attackers unauthorized access to Docker containers from the host network used by Broker VM. This may allow access to read files sent for analysis and logs transmitted by the Cortex XDR Agent to the Cortex XDR server.
Title Cortex XDR Broker VM: Unauthorized Access to Broker VM Docker Containers
Weaknesses CWE-424
References
Metrics cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:P/AC:L/AT:P/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/AU:Y/R:U/V:C/RE:M/U:Amber'}


cve-icon MITRE

Status: PUBLISHED

Assigner: palo_alto

Published:

Updated: 2025-04-09T16:16:48.152Z

Reserved: 2024-12-20T23:23:14.923Z

Link: CVE-2025-0113

cve-icon Vulnrichment

Updated: 2025-02-12T21:20:31.798Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-02-12T21:15:16.950

Modified: 2025-04-09T17:15:30.810

Link: CVE-2025-0113

cve-icon Redhat

No data.