Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Palo Alto Networks | Expedition | 1.2.0 ~ 1.2.96 | cpe:2.3:a:paloaltonetworks:expedition:1.2.0:-:*:*:*:*:*:* |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | None | https://github.com/nothe1senberg/CVE-2024-9463 | POC Details |
| 2 | An OS command injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to run arbitrary OS commands as root in Expedition, resulting in disclosure of usernames, cleartext passwords, device configurations, and device API keys of PAN-OS firewalls. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-9463.yaml | POC Details |
| 3 | Proof of Concept for CVE-2024-9463 | https://github.com/momo1239/CVE-2024-9463-Proof-of-Concept | POC Details |
No public POC found.
Login to generate AI POC| CVE-2024-9464 | Expedition: Authenticated OS Command Injection Vulnerability Leads to Firewall Admin Crede | |
| CVE-2024-9465 | Expedition: SQL Injection Leads to Firewall Admin Credential Disclosure | |
| CVE-2024-9466 | Expedition: Cleartext Storage of Information Leads to Firewall Admin Credential Disclosure | |
| CVE-2024-9467 | Expedition: Reflected Cross-Site Scripting Vulnerability Leads to Expedition Session Discl | |
| CVE-2024-9468 | PAN-OS: Firewall Denial of Service (DoS) via a Maliciously Crafted Packet | |
| CVE-2024-9469 | Cortex XDR Agent: Local Windows User Can Disable the Agent | |
| CVE-2024-9470 | Cortex XSOAR: Information Disclosure Vulnerability | |
| CVE-2024-9471 | PAN-OS: Privilege Escalation (PE) Vulnerability in XML API | |
| CVE-2024-9473 | GlobalProtect App: Local Privilege Escalation (PE) Vulnerability |
No comments yet