### [CVE-2023-0002](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-0002) ![](https://img.shields.io/static/v1?label=Product&message=Cortex%20XDR%20agent&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=!%207.9%20All%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-693%20Protection%20Mechanism%20Failure&color=brighgreen) ### Description A problem with a protection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices allows a local user to execute privileged cytool commands that disable or uninstall the agent. ### POC #### Reference No PoCs from references. #### Github - https://github.com/jeremymonk21/Vulnerability-Management-and-SIEM-Implementation-Project