logo

Palo Alto Networks warns of firewall hijack bugs with public exploit

ID: 89fc883f-7fd4-5cfb-831e-4f08fc59b8ba

STIX ID: report--89fc883f-7fd4-5cfb-831e-4f08fc59b8ba

Feed Name: Bleeping Computer

Threat Score
72/100

Date Published: 2024-10-09

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

Palo Alto Networks disclosed multiple vulnerabilities in its Expedition configuration-migration tool that can be chained to read and write arbitrary files, expose cleartext usernames/passwords and API keys, and enable unauthenticated command execution on affected systems; a public proof-of-concept exists and fixes are available in Expedition 1.2.96, with recommendations to restrict access and rotate credentials.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.