Palo Alto Networks warns of firewall hijack bugs with public exploit
ID: 89fc883f-7fd4-5cfb-831e-4f08fc59b8ba
STIX ID: report--89fc883f-7fd4-5cfb-831e-4f08fc59b8ba
Feed Name: Bleeping Computer
Threat Score
Palo Alto Networks disclosed multiple vulnerabilities in its Expedition configuration-migration tool that can be chained to read and write arbitrary files, expose cleartext usernames/passwords and API keys, and enable unauthenticated command execution on affected systems; a public proof-of-concept exists and fixes are available in Expedition 1.2.96, with recommendations to restrict access and rotate credentials.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
