Paloaltonetworks
Paloaltonetworks Expedition: vulnerabilidades y CVE
Paloaltonetworks Expedition tiene 16 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 6 son críticas y 3 figuran en el catálogo de explotación activa de CISA.
CVE16
Últimos 12 meses0
Críticas6
Explotadas activamente3
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
🔴 Explotadas activamente (CISA KEV)
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2024-9465 | Crítica (9.2) | 100% | ⚠ Explotación activa | 9 oct 2024 | An SQL injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to reveal Expedition database contents, such as password hashes, usernames, device configurations, and device API keys.… |
| CVE-2024-9463 | Crítica (9.9) | 99% | ⚠ Explotación activa | 9 oct 2024 | An OS command injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to run arbitrary OS commands as root in Expedition, resulting in disclosure of usernames, cleartext passwords,… |
| CVE-2024-5910 | Crítica (9.3) | 92% | ⚠ Explotación activa | 10 jul 2024 | Missing authentication for a critical function in Palo Alto Networks Expedition can lead to an Expedition admin account takeover for attackers with network access to Expedition. Note: Expedition is a tool aiding in… |
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-0107 | Alta (7.7) | 79% | — | 11 ene 2025 | An OS command injection vulnerability in Palo Alto Networks Expedition enables an unauthenticated attacker to run arbitrary OS commands as the www-data user in Expedition, which results in the disclosure of usernames,… |
| CVE-2025-0106 | Media (6.9) | 0.48% | — | 11 ene 2025 | A wildcard expansion vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to enumerate files on the host filesystem. |
| CVE-2025-0105 | Media (6.9) | 13% | — | 11 ene 2025 | An arbitrary file deletion vulnerability in Palo Alto Networks Expedition enables an unauthenticated attacker to delete arbitrary files accessible to the www-data user on the host filesystem. |
| CVE-2025-0104 | Alta (7) | 0.36% | — | 11 ene 2025 | A reflected cross-site scripting (XSS) vulnerability in Palo Alto Networks Expedition enables attackers to execute malicious JavaScript code in the context of an authenticated Expedition user’s browser if that… |
| CVE-2025-0103 | Crítica (9.2) | 0.62% | — | 11 ene 2025 | An SQL injection vulnerability in Palo Alto Networks Expedition enables an authenticated attacker to reveal Expedition database contents, such as password hashes, usernames, device configurations, and device API keys.… |
| CVE-2024-9467 | Alta (7) | 0.67% | — | 9 oct 2024 | A reflected XSS vulnerability in Palo Alto Networks Expedition enables execution of malicious JavaScript in the context of an authenticated Expedition user's browser if that user clicks on a malicious link, allowing… |
| CVE-2024-9466 | Alta (8.2) | 14% | — | 9 oct 2024 | A cleartext storage of sensitive information vulnerability in Palo Alto Networks Expedition allows an authenticated attacker to reveal firewall usernames, passwords, and API keys generated using those credentials. |
| CVE-2024-9465 | Crítica (9.2) | 100% | ⚠ Explotación activa | 9 oct 2024 | An SQL injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to reveal Expedition database contents, such as password hashes, usernames, device configurations, and device API keys.… |
| CVE-2024-9464 | Crítica (9.3) | 83% | — | 9 oct 2024 | An OS command injection vulnerability in Palo Alto Networks Expedition allows an authenticated attacker to run arbitrary OS commands as root in Expedition, resulting in disclosure of usernames, cleartext passwords,… |
| CVE-2024-9463 | Crítica (9.9) | 99% | ⚠ Explotación activa | 9 oct 2024 | An OS command injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to run arbitrary OS commands as root in Expedition, resulting in disclosure of usernames, cleartext passwords,… |
| CVE-2024-5910 | Crítica (9.3) | 92% | ⚠ Explotación activa | 10 jul 2024 | Missing authentication for a critical function in Palo Alto Networks Expedition can lead to an Expedition admin account takeover for attackers with network access to Expedition. Note: Expedition is a tool aiding in… |
| CVE-2019-1571 | Media (4.8) | 1.1% | — | 26 mar 2019 | The Expedition Migration tool 1.1.8 and earlier may allow an authenticated attacker to run arbitrary JavaScript or HTML in the RADIUS server settings. |
| CVE-2019-1570 | Media (4.8) | 1.1% | — | 26 mar 2019 | The Expedition Migration tool 1.1.8 and earlier may allow an authenticated attacker to run arbitrary JavaScript or HTML in the LDAP server settings. |
| CVE-2019-1569 | Media (4.8) | 1.1% | — | 26 mar 2019 | The Expedition Migration tool 1.1.8 and earlier may allow an authenticated attacker to run arbitrary JavaScript or HTML in the User Mapping Settings for account name of admin user. |
| CVE-2018-10143 | Crítica (9.8) | 25% | — | 12 dic 2018 | The Palo Alto Networks Expedition Migration tool 1.0.107 and earlier may allow an unauthenticated attacker with remote access to run system level commands on the device hosting this service/application. |
| CVE-2018-10142 | Alta (7.5) | 2.2% | — | 27 nov 2018 | The Expedition Migration tool 1.0.106 and earlier may allow an unauthenticated attacker to enumerate files on the operating system. |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.