CVE-2024-9466

Severity CVSS v4.0:
HIGH
Type:
CWE-312 Cleartext Storage of Sensitive Information
Publication date:
09/10/2024
Last modified:
17/10/2024

Description

A cleartext storage of sensitive information vulnerability in Palo Alto Networks Expedition allows an authenticated attacker to reveal firewall usernames, passwords, and API keys generated using those credentials.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:paloaltonetworks:expedition:*:*:*:*:*:*:*:* 1.2.0 (including) 1.2.96 (excluding)