We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
Assigner | palo_alto |
Reserved | 2024-10-03 |
Published | 2024-10-09 |
Updated | 2024-10-18 |
A reflected XSS vulnerability in Palo Alto Networks Expedition enables execution of malicious JavaScript in the context of an authenticated Expedition user's browser if that user clicks on a malicious link, allowing phishing attacks that could lead to Expedition browser session theft.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N/AU:N/R:U/V:C/RE:H/U:Amber |
2024-10-09: | Initial publication |
Enrique Castillo of Palo Alto Networks
https://security.paloaltonetworks.com/PAN-SA-2024-0010