Home Palo Alto Networks CVE-2024-8687
Back to Palo Alto Networks

CVE-2024-8687

PAN-OS - GlobalProtect

Palo Alto Networks CVSS 7.1 Updated March 16, 2026

Executive Risk Summary

"An information exposure vulnerability exists in Palo Alto Networks PAN-OS software, allowing GlobalProtect end users to learn the configured GlobalProtect uninstall password and the configured disable or disconnect passcode. This vulnerability enables end users to uninstall, disable, or disconnect GlobalProtect even if the GlobalProtect app configuration would not normally permit them to do so."

Operational Audit Arsenal

Target Type Software Component
Target Asset GlobalProtect
Standard Path Global Firmware

Manual Verification Required

This is a non-Windows asset (Palo Alto Networks). Use the target asset details and official path provided above to verify your current version against the official vendor advisories listed below.

Patch Impact Forecast

Reboot Required Likely

Network connectivity may be interrupted during the patching process

Internal Work Notes

CVE-2024-8687: GlobalProtect information exposure vulnerability, allowing end users to bypass uninstall and disconnect restrictions. Apply latest PAN-OS patch to mitigate risk.

Technical Intelligence & Operational Utilities • Delivered Weekly

Intelligence Sources

Related Palo Alto Networks Threats

Data compiled from NVD, MSRC, and CISA KEV Catalog. Intelligence synthesized via AI. Scripts provided for diagnostic purposes under MIT License.