CVE-2024-5910
- EPSS 91.03%
- Veröffentlicht 10.07.2024 19:15:11
- Zuletzt bearbeitet 04.11.2025 16:48:52
Missing authentication for a critical function in Palo Alto Networks Expedition can lead to an Expedition admin account takeover for attackers with network access to Expedition. Note: Expedition is a tool aiding in configuration migration, tuning, a...
CVE-2019-1571
- EPSS 0.69%
- Veröffentlicht 26.03.2019 23:29:00
- Zuletzt bearbeitet 21.11.2024 04:36:50
The Expedition Migration tool 1.1.8 and earlier may allow an authenticated attacker to run arbitrary JavaScript or HTML in the RADIUS server settings.
CVE-2019-1569
- EPSS 0.69%
- Veröffentlicht 26.03.2019 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:36:49
The Expedition Migration tool 1.1.8 and earlier may allow an authenticated attacker to run arbitrary JavaScript or HTML in the User Mapping Settings for account name of admin user.
CVE-2019-1570
- EPSS 0.69%
- Veröffentlicht 26.03.2019 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:36:50
The Expedition Migration tool 1.1.8 and earlier may allow an authenticated attacker to run arbitrary JavaScript or HTML in the LDAP server settings.
- EPSS 28.14%
- Veröffentlicht 12.12.2018 00:29:00
- Zuletzt bearbeitet 21.11.2024 03:40:55
The Palo Alto Networks Expedition Migration tool 1.0.107 and earlier may allow an unauthenticated attacker with remote access to run system level commands on the device hosting this service/application.
CVE-2018-10142
- EPSS 0.75%
- Veröffentlicht 27.11.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 03:40:55
The Expedition Migration tool 1.0.106 and earlier may allow an unauthenticated attacker to enumerate files on the operating system.