Skip to content
COOEY

FAIL › dossier

Expedition

PRODUCT

· dossier confidence 20%

Palo Alto Networks' Expedition platform has recently been plagued by critical security vulnerabilities, including RCE and authentication bypass flaws, raising concerns about its overall security posture and potential impact on DIB/CMMC compliance. These issues necessitate immediate remediation and a review of development and testing processes. The repeated nature of these vulnerabilities suggests systemic weaknesses.

PROFILE
CategorycybersecurityWhat they doPalo Alto Networks Expedition is a security platform providing network security and threat prevention. It offers features like next-generation firewalls, cloud security, and threat intelligence. Websitehttps://www.paloaltonetworks.com/ ↗
SECURITY POSTURE

Palo Alto Networks Expedition has demonstrated significant vulnerabilities, evidenced by multiple high-severity Remote Code Execution (RCE) and authentication bypass flaws discovered in late 2024. These issues highlight weaknesses in the platform's security controls and potentially expose sensitive data and system access.

Notable failures
  • CVE-2024-9465 (RCE): SQL injection allows database access
  • CVE-2024-9463 (RCE): Arbitrary root command execution
  • CVE-2024-5910 (High): Authentication bypass allows admin account seizure
Patterns: unpatched vulnerabilities leading to RCE; authentication bypass vulnerabilities; SQL injection vulnerabilities
FAILURE HISTORY · 3
DATEEVENTSEVSUMMARY
2024-11-14 CVE-2024-9465 high Palo Alto Networks Expedition allows unauthenticated attackers to read database contents and execute arbitrary file operations via SQL injection.
2024-11-14 CVE-2024-9463 high Palo Alto Networks Expedition OS allows unauthenticated attackers to execute arbitrary root commands, exposing credentials and API keys.
2024-11-07 CVE-2024-5910 high Palo Alto Networks Expedition allows attackers to bypass authentication and seize admin accounts via network access.
Open questions: What is the current patching status of Expedition deployments? · What specific security practices are being implemented to prevent future vulnerabilities?
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-08-03 03:53:47.109779+00:00