logo

Critical vulnerabilities in Palo Alto Expedition: everything you need to know

ID: 35ef6393-1429-5629-8671-5c91791a6154

STIX ID: report--35ef6393-1429-5629-8671-5c91791a6154

Feed Name: Wiz Blog

Threat Score
70/100

Date Published: 2024-10-10

Date Updated: 2026-05-01

...
...

Palo Alto Networks Expedition contains multiple critical vulnerabilities (OS command injection, SQL injection, cleartext credential storage, and reflected XSS) with CVSS scores up to 9.9 that can enable unauthenticated remote code execution, credential theft, and administrative takeover. All Expedition versions prior to 1.2.96 are affected; upgrade to 1.2.96 or later, restrict access, rotate credentials, monitor specific endpoints (/OS/startup/restore/restoreAdmin.php, /bin/CronJobs.php), and disable unused instances as mitigations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.