Medium severity6.1NVD Advisory· Published Oct 9, 2024· Updated Jun 17, 2026
CVE-2024-9467
CVE-2024-9467
Description
A reflected XSS vulnerability in Palo Alto Networks Expedition enables execution of malicious JavaScript in the context of an authenticated Expedition user's browser if that user clicks on a malicious link, allowing phishing attacks that could lead to Expedition browser session theft.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:paloaltonetworks:expedition:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:paloaltonetworks:expedition:*:*:*:*:*:*:*:*range: >=1.2.0,<1.2.96
- cpe:2.3:a:paloaltonetworks:expedition:1.2.0:-:*:*:*:*:*:*range: 1.2.0
- (no CPE)
Patches
Vulnerability mechanics
References
1- security.paloaltonetworks.com/PAN-SA-2024-0010nvdMitigationVendor Advisory
News mentions
0No linked articles in our index yet.