Expedition Admin Account Takeover Risk Due to Missing Authentication

CVE-2024-5910
Currently unrated 🤨

Key Information

Status
Expedition
Vendor
CVE Published:
10 July 2024

Badges

👾 Exploit Exists📰 News Worthy

Summary

CVE-2024-5910 is a critical vulnerability in the Palo Alto Networks Expedition Migration Tool, with a high CVSS score of 9.3. It allows for attackers with network access to Expedition to take over the admin account due to missing authentication for a critical function. This puts configuration secrets, credentials, and imported data at risk. It is recommended to restrict network access to Expedition to authorized users, hosts, or networks, and to update to Expedition 1.2.92 or later to fix this issue. There are no known ransomware exploits related to this vulnerability at this time.

Affected Version(s)

Expedition < 1.2.92

News Articles

Timeline

  • First article discovered by SystemTek

  • Initial publication

  • Vulnerability published.

  • Vulnerability Reserved.

  • 👾

    Exploit exists.

Collectors

NVD DatabaseMitre Database2 News Article(s)

Credit

Brian Hysell (Synopsys CyRC)
.