logo

Palo Alto Networks Patches Critical Flaw in Expedition Migration Tool

ID: 6230e1e0-992e-5779-8be2-c6cab3b47d83

STIX ID: report--6230e1e0-992e-5779-8be2-c6cab3b47d83

Feed Name: The Hacker News

Threat Score
75/100

Date Published: 2024-07-11

Date Updated: 2026-05-08

Author: [email protected] (The Hacker News)

...
...

Palo Alto Networks released patches for five security flaws, notably CVE-2024-5910 (critical, CVSS 9.3) — a missing authentication issue in the Expedition migration tool that can enable admin account takeover — and CVE-2024-3596 (BlastRADIUS), which can allow privilege escalation to ‘superuser’ via an adversary-in-the-middle attack against RADIUS authentication. Affected PAN-OS and Prisma Access versions are listed; users are advised to update and restrict network access to mitigate risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.