Palo Alto Networks Product Security Update Advisory (CVE-2025-4235)

Palo Alto Networks Product Security Update Advisory (CVE-2025-4235)

Overview

 

Palo Alto Networks has released security updates to fix vulnerabilities in its products. Users of affected products are advised to update to the latest version.
 

 

Affected Products

 

CVE-2025-4235

 

User-ID Credential Agent on Windows Versions: 11.0.2-133 and above and 11.0.3 and below

 

 

Resolved Vulnerabilities

 

Service Account Password Exposure Vulnerability in Palo Alto Networks User-ID Credential Agent (CVE-2025-4235)

 

 

Vulnerability Patches

Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

 

CVE-2025-4235

 

User-ID Credential Agent on Windows Version: 11.0.3 and later

 

 

References

 

[1] CVE-2025-4235 User-ID Credential Agent: Cleartext Exposure of Service Account password
https://security.paloaltonetworks.com/CVE-2025-4235