Critical vulnerabilities in Palo Alto Expedition: everything you need to know
ID: 35ef6393-1429-5629-8671-5c91791a6154
STIX ID: report--35ef6393-1429-5629-8671-5c91791a6154
Feed Name: Wiz Blog
Palo Alto Networks Expedition contains multiple critical vulnerabilities (OS command injection, SQL injection, cleartext credential storage, and reflected XSS) with CVSS scores up to 9.9 that can enable unauthenticated remote code execution, credential theft, and administrative takeover. All Expedition versions prior to 1.2.96 are affected; upgrade to 1.2.96 or later, restrict access, rotate credentials, monitor specific endpoints (/OS/startup/restore/restoreAdmin.php, /bin/CronJobs.php), and disable unused instances as mitigations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
