Palo Alto Networks Patches Critical Flaw in Expedition Migration Tool
ID: 6230e1e0-992e-5779-8be2-c6cab3b47d83
STIX ID: report--6230e1e0-992e-5779-8be2-c6cab3b47d83
Feed Name: The Hacker News
Palo Alto Networks released patches for five security flaws, notably CVE-2024-5910 (critical, CVSS 9.3) — a missing authentication issue in the Expedition migration tool that can enable admin account takeover — and CVE-2024-3596 (BlastRADIUS), which can allow privilege escalation to ‘superuser’ via an adversary-in-the-middle attack against RADIUS authentication. Affected PAN-OS and Prisma Access versions are listed; users are advised to update and restrict network access to mitigate risk.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
