Unrated severityNVD Advisory· Published Jan 11, 2025· Updated Jan 13, 2025
Expedition: SQL Injection Vulnerability
CVE-2025-0103
Description
An SQL injection vulnerability in Palo Alto Networks Expedition enables an authenticated attacker to reveal Expedition database contents, such as password hashes, usernames, device configurations, and device API keys. This vulnerability also enables attackers to create and read arbitrary files on the Expedition system.
Affected products
6(expand)+ 1 more
- (no CPE)
- (no CPE)range: 1
- Range: All
- Range: All
- Palo Alto Networks/Panoramav5Range: All
- Range: All
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- security.paloaltonetworks.com/PAN-SA-2025-0001mitrevendor-advisory
News mentions
0No linked articles in our index yet.