Protection mechanism failure in Prisma Access Agent on Windows - CVE-2026-0293

 

Protection mechanism failure in Prisma Access Agent on Windows - CVE-2026-0293

Published: August 16, 2026


Vulnerability identifier: #VU143212
CSH Severity: Low
CVSS v4: 8.3 [CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2026-0293
CWE-ID: CWE-693
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a local privileged user to bypass anti-tamper protection and gain unauthorized access to protected processes and files.

The vulnerability exists due to protection mechanism failure in anti-tamper protection in Prisma Access Agent on Windows when enforcing protection for processes and files. A local privileged user can bypass the anti-tamper protection to bypass anti-tamper protection and gain unauthorized access to protected processes and files.

No special configuration is required to be affected by this issue.


Affected software

Prisma Access Agent on Windows

How to mitigate CVE-2026-0293

Install security update from vendor's website.

Prisma Access Agent on Windows - update to 26.3

External References

Related Security Bulletins