CVE-2022-0013
medium
📛 Threat Title
Cortex XDR Agent: File Information Exposure Vulnerability When Generating Support File
Description
A file information exposure vulnerability exists in the Palo Alto Networks Cortex XDR agent that enables a local attacker to read the contents of arbitrary files on the system with elevated privileges...
Indicators of Compromise (1)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
cve
CVE-2022-0013
IOC database
- Type
- cve
- Value
CVE-2022-0013- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Cortex XDR Agent: File Information Exposure Vulnerability When Generating Support File
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
No VirusTotal details cached for this IOC. Open the IOC page to query VirusTotal.
References (1)
-
Palo Alto Networks advisory: CVE-2022-0013
Paloalto Networks Security
A file information exposure vulnerability exists in the Palo Alto Networks Cortex XDR agent that enables a local attacker to read the contents of arbitrary files on the system with elevated privileges...
Remediations (8)
-
web:community.ibm.com
The CVE Process: How to Identify, Respond to, and Mitigate Vulnerabilities Author Information Author Names: Himanshu Karmarkar and Nishant Singhai Introduction As you may be aware, the number of reported CVEs has been increasing exponentially over the past few years. This surge in CVEs has left many organizations struggling to keep pace with the sheer volume of vulnerabilities, making it ...
-
web:msrc.microsoft.com
Access Microsoft Security Response Center's guide to address vulnerabilities, manage security risks, and keep your systems protected with the latest updates.
-
web:portal.msrc.microsoft.com
The Security Update Guide provides information on the latest Microsoft security updates, helping users understand and address potential vulnerabilities effectively.
-
web:support.servicenow.com
Overview The advisories below document publicly disclosed Common Vulnerabilities and Exposures ( CVEs ) in the Now Platform by ServiceNow. Because ServiceNow uses various methods to communicate vulnerability information, patches, and other fixes, customers should review family, security patch , and hotfix release notes, which are available at https://docs.servicenow.com, for a complete list of ...
-
web:www.cisa.gov
If agencies are running these vulnerable versions, they should: For public-facing ASA hardware devices, follow CISA's step-by-step Core Dump and Hunt Instructions Parts 1-3 and submit core dump (s) via the Malware Next Gen portal, and then Patch immediately.
-
web:www.malwarebytes.com
Google has released an urgent update for the Chrome browser to patch a vulnerability which has already been exploited.
-
web:www.microsoft.com
Security Update Guide Notifications Microsoft's free Security Update Guide Notifications provide links to security-related software updates and notification of re-released security updates. These notifications are sent via email throughout the month as needed.
-
web:www.oracle.com
Map of CVE to Advisory/Alert The following table, updated to include the April 21, 2026 Critical Patch Update, maps CVEs to specific Critical Patch Update Advisories or Security alerts for CVEs greater than CVE -2021-0000.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.