AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-0027

MEDIUM · CVSS 4.3 EPSS 0.53%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2022-05-11 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2022-0027
Severity
MEDIUM
CVSS
4.3
EPSS
0.53%
Palo Alto

Original NVD Description

An improper authorization vulnerability in Palo Alto Network Cortex XSOAR software enables authenticated users in non-Read-Only groups to generate an email report that contains summary information about all incidents in the Cortex XSOAR instance, including incidents to which the user does not have access. This issue impacts: All versions of Cortex XSOAR 6.1; All versions of Cortex XSOAR 6.2; All versions of Cortex XSOAR 6.5; Cortex XSOAR 6.6 versions earlier than Cortex XSOAR 6.6.0 build 6.6.0.2585049.