VYPR
Medium severity6.1NVD Advisory· Published Oct 9, 2024· Updated Jun 17, 2026

CVE-2024-9467

CVE-2024-9467

Description

A reflected XSS vulnerability in Palo Alto Networks Expedition enables execution of malicious JavaScript in the context of an authenticated Expedition user's browser if that user clicks on a malicious link, allowing phishing attacks that could lead to Expedition browser session theft.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:paloaltonetworks:expedition:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:paloaltonetworks:expedition:*:*:*:*:*:*:*:*range: >=1.2.0,<1.2.96
    • cpe:2.3:a:paloaltonetworks:expedition:1.2.0:-:*:*:*:*:*:*range: 1.2.0
    • (no CPE)

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.