#VU28966 Improper Certificate Validation in GlobalProtect Agent - CVE-2020-2033
Published: June 11, 2020 / Updated: June 11, 2020
GlobalProtect Agent
Palo Alto Networks, Inc.
Description
The vulnerability allows a remote attacker to perform a man-in-the-middle (MitM) attack.
The vulnerability exists due to a missing certification validation, when the pre-logon feature is enabled. A remote attacker on the local network can perform a MitM attack, disclose the pre-logon authentication cookie and access the GlobalProtect Server as allowed by configured Security rules for the "pre-login" user.