Palo Alto Networks Product Security Update Advisory (CVE-2025-4235)
Overview
Palo Alto Networks has released security updates to fix vulnerabilities in its products. Users of affected products are advised to update to the latest version.
Affected Products
CVE-2025-4235
User-ID Credential Agent on Windows Versions: 11.0.2-133 and above and 11.0.3 and below
Resolved Vulnerabilities
Service Account Password Exposure Vulnerability in Palo Alto Networks User-ID Credential Agent (CVE-2025-4235)
Vulnerability Patches
Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2025-4235
User-ID Credential Agent on Windows Version: 11.0.3 and later
References
[1] CVE-2025-4235 User-ID Credential Agent: Cleartext Exposure of Service Account password
https://security.paloaltonetworks.com/CVE-2025-4235