CVE-2024-9465: Palo Alto Networks Expedition SQL Injection Vulnerability
Critical severity, CVSS 9.1. Actively exploited: in CISA KEV since 2024-11-14. EPSS: 99.6% chance of exploitation in the next 30 days.
An SQL injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to reveal Expedition database contents, such as password hashes, usernames, device configurations, and device API keys. With this, attackers can also create and read arbitrary files on the Expedition system.
Affected products
- Palo Alto Networks Expedition: from 1.2.0, before 1.2.96 (fixed in 1.2.96)
Published 2024-10-09. Last modified 2026-06-17.