CISA Adds 2 Critical Palo Alto Vulnerabilities To Catalog
ID: 5fae63cb-8115-5929-a508-3ae4e227e318
STIX ID: report--5fae63cb-8115-5929-a508-3ae4e227e318
Feed Name: Cyble Blog
## Executive Summary The report details two high-severity, actively exploited vulnerabilities in Palo Alto Networks Expedition (CVE-2024-9463: OS command injection, CVE-2024-9465: SQL injection) with CVSSv4 scores of 9.9 and 9.2 respectively; both affect Expedition versions prior to 1.2.96, have evidence of active exploitation (including PoC availability), and pose risks of root access, exposure of credentials and configurations, and potential system compromise—organizations are advised to patch to 1.2.96+, rotate credentials and API keys, and enhance monitoring and incident response readiness.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
