Palo Alto Networks Expedition是美国Palo Alto Networks公司的一种有助于配置迁移、调优和丰富的工具。 Palo Alto Networks Expedition存在安全漏洞,该漏洞源于关键功能的身份验证缺失,导致具有网络访问权限的攻击者接管Expedition管理员帐户。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Palo Alto Networks | Expedition | 1.2 ~ 1.2.92 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | None | https://github.com/zetraxz/CVE-2024-5910 | POC Details |
| 2 | None | https://github.com/p33d/Palo-Alto-Expedition-Remote-Code-Execution-Exploit-CVE-2024-5910-CVE-2024-9464 | POC Details |
| 3 | CVE-2024-5910 PoC | https://github.com/Farzan-Kh/CVE-2024-5910 | POC Details |
| 4 | Missing authentication for a critical function in Palo Alto Networks Expedition can lead to an Expedition admin account takeover for attackers with network access to Expedition. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-5910.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2024-5913 | 6.1 MEDIUM | PAN-OS: Improper Input Validation Vulnerability in PAN-OS |
| CVE-2024-5912 | Cortex XDR Agent: Improper File Signature Verification Checks | |
| CVE-2024-5911 | PAN-OS: File Upload Vulnerability in the Panorama Web Interface |
No comments yet