The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added Palo Alto Networks Expedition vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog.
The vulnerabilities in the Palo Alto Networks Expedition solution could allow an attacker to access sensitive data and potentially take over firewall administrator accounts.
The identified vulnerabilities include command injection, SQL injection, and cross-site scripting (XSS) flaws.
Palo Alto Networks provided workarounds and advised organizations to review and address the vulnerabilities in their infrastructure.