Home Palo Alto Networks CVE-2024-8691
Back to Palo Alto Networks

CVE-2024-8691

PAN-OS - GlobalProtect

Palo Alto Networks CVSS 7.1 Updated March 16, 2026

Executive Risk Summary

"A vulnerability in the GlobalProtect portal in Palo Alto Networks PAN-OS software enables a malicious authenticated GlobalProtect user to impersonate another GlobalProtect user, potentially leading to unauthorized access. This vulnerability can cause active GlobalProtect users to be disconnected, with PAN-OS logs indicating the impersonated user authenticated to GlobalProtect, hiding the attacker's identity."

Operational Audit Arsenal

Target Type Software Component
Target Asset GlobalProtect
Standard Path Management Plane

Manual Verification Required

This is a non-Windows asset (Palo Alto Networks). Use the target asset details and official path provided above to verify your current version against the official vendor advisories listed below.

Patch Impact Forecast

Reboot Required Likely

Moderate, as active GlobalProtect users may be disconnected during the update process

Internal Work Notes

Investigate and apply patch for CVE-2024-8691 to prevent GlobalProtect user impersonation, verify version using the CLI command 'show system info' to ensure the update is successful

Technical Intelligence & Operational Utilities • Delivered Weekly

Intelligence Sources

Related Palo Alto Networks Threats

Data compiled from NVD, MSRC, and CISA KEV Catalog. Intelligence synthesized via AI. Scripts provided for diagnostic purposes under MIT License.