Prisma Access Agent: Authenticated Limited File Deletion on Linux
MonitorCVSS 4.8CVE-2026-0291Aug 12, 2026
Palo Alto Networks
IT in OT - Palo Alto firewalls are commonly deployed at IT/OT network boundaries
Summary
An improper link resolution vulnerability in Palo Alto Networks Prisma Access Agent on Linux allows a local low-privileged user to delete system files in a limited scope and disable the Prisma Access Agent. The vulnerability does not affect macOS, Windows, iOS, Android, or Chrome OS versions of the agent.
What this means
What could happen
A local user with basic access to a Linux machine running Prisma Access Agent could delete specific system files and disable the VPN agent, potentially disrupting secure remote access for the organization.
Who's at risk
Organizations using Prisma Access Agent on Linux endpoints for remote access or VPN connectivity. This affects endpoint security and business continuity for remote workers relying on the agent.
How it could be exploited
An attacker with a local user account on a Linux system running the affected agent could exploit a symlink resolution flaw to delete system files in a limited scope. This requires local shell access and low privileges but could disrupt the agent or system stability.
Prerequisites
- Local user account on the Linux machine
- Prisma Access Agent version below 26.2.2 running on Linux
- Write permissions in directories where the agent operates
Requires local accessLow CVSS score (4.8)Limited scope of file deletionOnly affects Linux platform
Exploitability
Unlikely to be exploited — EPSS score 0.1%
Affected products (6)
1 with fix5 pending
ProductAffected VersionsFix Status
Prisma Access AgentBelow 26.2.2 on Linux26.2.2 on Linux+
Prisma Access AgentNone on macOSNo fix yet
Prisma Access AgentNone on WindowsNo fix yet
Prisma Access AgentNone on iOSNo fix yet
Prisma Access AgentNone on AndroidNo fix yet
Prisma Access AgentNone on Chrome OSNo fix yet
Remediation & Mitigation
0/1
Schedule — requires maintenance window
0/1Patching may require device reboot — plan for process interruption
Prisma Access Agent
HOTFIXUpdate Prisma Access Agent to version 26.2.2 or later on all Linux endpoints
CVEs (1)
↑↓ Navigate · Esc Close
API:
/api/v1/advisories/35a75d82-27eb-4dcc-a860-d724fedbc35fGet OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.