<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic CVEs for applications Unsupported Platform in Cortex XDR Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cves-for-applications-unsupported-platform/m-p/1205038#M7786</link>
    <description>&lt;P&gt;We have quite a bit of different softwares installed here, many Adobe products, 7-zip etc which I know have CVEs issued. Do I need to do something to enable this feature in XDR? ALL of the software detected shows Unsupported Platform. Does this feature actually work?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="DopedWafer_0-1737557531926.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/65355i1317EC8C3510911B/image-size/medium?v=v2&amp;amp;px=400" role="button" title="DopedWafer_0-1737557531926.png" alt="DopedWafer_0-1737557531926.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 22 Jan 2025 14:53:40 GMT</pubDate>
    <dc:creator>DopedWafer</dc:creator>
    <dc:date>2025-01-22T14:53:40Z</dc:date>
    <item>
      <title>CVEs for applications Unsupported Platform</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cves-for-applications-unsupported-platform/m-p/1205038#M7786</link>
      <description>&lt;P&gt;We have quite a bit of different softwares installed here, many Adobe products, 7-zip etc which I know have CVEs issued. Do I need to do something to enable this feature in XDR? ALL of the software detected shows Unsupported Platform. Does this feature actually work?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="DopedWafer_0-1737557531926.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/65355i1317EC8C3510911B/image-size/medium?v=v2&amp;amp;px=400" role="button" title="DopedWafer_0-1737557531926.png" alt="DopedWafer_0-1737557531926.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Jan 2025 14:53:40 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cves-for-applications-unsupported-platform/m-p/1205038#M7786</guid>
      <dc:creator>DopedWafer</dc:creator>
      <dc:date>2025-01-22T14:53:40Z</dc:date>
    </item>
    <item>
      <title>Re: CVEs for applications Unsupported Platform</title>
      <link>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cves-for-applications-unsupported-platform/m-p/1205056#M7787</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/37384"&gt;@DopedWafer&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks for reaching out on LiveCommunity!&lt;/P&gt;
&lt;P&gt;Please check if you meet all the prerequisites for vulnerability assessment.&lt;/P&gt;
&lt;TABLE class="informaltable frame-void rules-rows"&gt;
&lt;THEAD&gt;
&lt;TR&gt;
&lt;TH class="th"&gt;
&lt;P&gt;Requirement&lt;/P&gt;
&lt;/TH&gt;
&lt;TH class="th"&gt;
&lt;P&gt;Description&lt;/P&gt;
&lt;/TH&gt;
&lt;/TR&gt;
&lt;/THEAD&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TD class="td"&gt;
&lt;P&gt;Licenses and Add-ons&lt;/P&gt;
&lt;/TD&gt;
&lt;TD class="td"&gt;
&lt;DIV class="itemizedlist"&gt;
&lt;UL class="itemizedlist"&gt;
&lt;LI class="listitem"&gt;
&lt;P&gt;&lt;SPAN class="phrase"&gt;Cortex XDR&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;Pro per Endpoint license.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI class="listitem"&gt;
&lt;P&gt;&lt;SPAN class="phrase"&gt;Host Insights Add-on&lt;/SPAN&gt;.&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;/DIV&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD class="td"&gt;
&lt;P&gt;Supported Platforms&lt;/P&gt;
&lt;/TD&gt;
&lt;TD class="td"&gt;
&lt;DIV class="itemizedlist"&gt;
&lt;UL class="itemizedlist"&gt;
&lt;LI class="listitem"&gt;
&lt;P&gt;&lt;SPAN class="bold"&gt;&lt;STRONG&gt;Windows&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV class="itemizedlist"&gt;
&lt;UL class="itemizedlist"&gt;
&lt;LI class="listitem"&gt;
&lt;P&gt;Cortex XDR agent 7.1 or a later release.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI class="listitem"&gt;
&lt;P&gt;&lt;SPAN class="phrase"&gt;Cortex XDR&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;lists only CVEs relating to the operating system, and not CVEs relating to applications provided by other vendors.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI class="listitem"&gt;
&lt;P&gt;&lt;SPAN class="phrase"&gt;Cortex XDR&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;retrieves the latest data for each CVE from the NIST National&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;MARK class="highlight-html-match" data-markjs="true"&gt;Vulnerability&lt;/MARK&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;Database as well as from the Microsoft Security Response Center (MSRC).&lt;/P&gt;
&lt;/LI&gt;
&lt;LI class="listitem"&gt;
&lt;P&gt;&lt;SPAN class="phrase"&gt;Cortex XDR&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;collects KB and application information from the agents but calculates CVE only for KBs based on the data collected from MSRC and other sources&lt;/P&gt;
&lt;/LI&gt;
&lt;LI class="listitem"&gt;
&lt;P&gt;For endpoints running Windows Insider,&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="phrase"&gt;Cortex XDR&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;cannot guarantee an accurate CVE&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;MARK class="highlight-html-match" data-markjs="true"&gt;assessment&lt;/MARK&gt;.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI class="listitem"&gt;
&lt;P&gt;&lt;SPAN class="phrase"&gt;Cortex XDR&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;does not display open CVEs for endpoints running Windows releases for which Microsoft no longer fixes CVEs.&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;/DIV&gt;
&lt;/LI&gt;
&lt;LI class="listitem"&gt;
&lt;P&gt;&lt;SPAN class="bold"&gt;&lt;STRONG&gt;Linux&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV class="itemizedlist"&gt;
&lt;UL class="itemizedlist"&gt;
&lt;LI class="listitem"&gt;
&lt;P&gt;Cortex XDR agent 7.1 or a later release.&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;/DIV&gt;
&lt;P&gt;&lt;SPAN class="phrase"&gt;Cortex XDR&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;collects all the information about the operating system and the installed applications, and calculates CVE based on the the latest data retrieved from the NIST.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI class="listitem"&gt;
&lt;P&gt;&lt;SPAN class="bold"&gt;&lt;STRONG&gt;MacOS&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;DIV class="itemizedlist"&gt;
&lt;UL class="itemizedlist"&gt;
&lt;LI class="listitem"&gt;
&lt;P&gt;Cortex XDR agent 7.1 or a later release.&lt;/P&gt;
&lt;/LI&gt;
&lt;LI class="listitem"&gt;
&lt;P&gt;&lt;SPAN class="phrase"&gt;Cortex XDR&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;collects only the applications list from MacOS without CVE calculation.&lt;/P&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;/DIV&gt;
&lt;/LI&gt;
&lt;/UL&gt;
&lt;/DIV&gt;
&lt;P&gt;If&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class="phrase"&gt;Cortex XDR&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;doesn't match any CVE to its corresponding application, an error message is displayed, "No CVEs Found".&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD class="td"&gt;
&lt;P&gt;Setup and Permissions&lt;/P&gt;
&lt;/TD&gt;
&lt;TD class="td"&gt;
&lt;P&gt;Ensure&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;A class="link linktype-component ft-internal-link" title="Set up agent settings profiles" href="https://docs-cortex.paloaltonetworks.com/r/tOk5m1nUkEFSXa9rbbYdyw/u1DWJJpnW_oYQ3fu2kbFdQ" data-ft-click-interceptor="ft-internal-link" target="_blank"&gt;Host Inventory Data Collection&lt;/A&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;is enabled for your Cortex XDR agent.&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;TR&gt;
&lt;TD class="td"&gt;
&lt;P&gt;Limitations&lt;/P&gt;
&lt;/TD&gt;
&lt;TD class="td"&gt;
&lt;P&gt;&lt;SPAN class="phrase"&gt;Cortex XDR&lt;/SPAN&gt;&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;calculates CVEs for applications according to the application version, and not according to application build numbers.&lt;/P&gt;
&lt;/TD&gt;
&lt;/TR&gt;
&lt;/TBODY&gt;
&lt;/TABLE&gt;</description>
      <pubDate>Wed, 22 Jan 2025 17:32:27 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/cortex-xdr-discussions/cves-for-applications-unsupported-platform/m-p/1205056#M7787</guid>
      <dc:creator>nsinghvirk</dc:creator>
      <dc:date>2025-01-22T17:32:27Z</dc:date>
    </item>
  </channel>
</rss>

