{
"dataType": "CVE_RECORD",
"dataVersion": "5.2",
"cveMetadata": {
"cveId": "CVE-2025-4235",
"assignerOrgId": "d6c1279f-00f6-4ef7-9217-f89ffe703ec0",
"state": "PUBLISHED",
"assignerShortName": "palo_alto",
"dateReserved": "2025-05-02T19:10:50.812Z",
"datePublished": "2025-09-12T17:16:53.868Z",
"dateUpdated": "2026-02-26T17:48:38.530Z"
},
"containers": {
"cna": {
"affected": [
{
"defaultStatus": "unaffected",
"platforms": [
"Windows"
],
"product": "User-ID Credential Agent",
"vendor": "Palo Alto Networks",
"versions": [
{
"changes": [
{
"at": "11.0.2-133",
"status": "affected"
},
{
"at": "11.0.3",
"status": "unaffected"
}
],
"lessThan": "11.0.2-133",
"status": "unaffected",
"version": "11.0.0",
"versionType": "custom"
}
]
}
],
"credits": [
{
"lang": "en",
"type": "finder",
"value": "Palo Alto Networks thanks an external reporter for discovering and reporting this issue."
}
],
"datePublic": "2025-09-10T16:00:00.000Z",
"descriptions": [
{
"lang": "en",
"supportingMedia": [
{
"base64": false,
"type": "text/html",
"value": "An information exposure vulnerability in the Palo Alto Networks User-ID Credential Agent (Windows-based) can expose the service account password under specific non-default configurations. This allows an unprivileged Domain User to escalate privileges by exploiting the account’s permissions. The impact varies by configuration:
| Version | Minor Version | Suggested Solution |
|---|---|---|
| User-ID Credential Agent 11.0 on Windows | 11.0.2-133 | Upgrade to 11.0.3 or later |
| 11.0.0 through 11.0.1-104 | No action needed. |