Handler on Duty: Guy Bruneau
Threat Level: green
| Published | 2026-08-13 03:16:44 |
|---|---|
| Last Modified | 2026-08-13 03:16:44 |
| AKA | CVE-2026-0296 |
| Summary | Improper certificate validation vulnerabilities in Palo Alto Networks GlobalProtectâ„¢ app enable an unauthenticated attacker with man-in-the-middle (MitM) access to intercept and modify application communications. VPN tunnel traffic is not impacted. The GlobalProtect app on iOS, Android, and Chrome OS is not affected. |
| Access Vector | Local | Adjacent | Network |
|---|---|---|---|
| Access Complexity | Low | Medium | High |
| Authentication | None | Single | Multiple |
| Confidentiality | None | Partial | Complete |
| Integrity | None | Partial | Complete |
| Availability | None | Partial | Complete |