Citing evidence of active exploitation, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a severe security hole that has been patched and affects Palo Alto Networks Expedition to its list of known exploited vulnerabilities (KEVs).
The Expedition migration program has a vulnerability known as CVE-2024-5910 (CVSS score: 9.3) that involves a situation of missing authentication that could result in an admin account takeover.
According to an alert from CISA, Palo Alto Expedition has a missing authentication vulnerability that enables a network-connected attacker to take control of an admin account and perhaps acquire credentials, configuration secrets, and other data read more about CISA Alerts to Active Exploitation of Critical Palo Alto Networks Vulnerability.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
