← العودة للجدول
CVE-2025-0107
CVE-2025-0107 — Palo Alto: An OS command injection vulnerability in Palo Alto Networks Expedition enables a
📅 2025-01-11
🔴 Critical 🔥 No NVD Exploit Palo Alto CVSS 9.8

📋 الوصف الكامل

An OS command injection vulnerability in Palo Alto Networks Expedition enables an unauthenticated attacker to run arbitrary OS commands as the www-data user in Expedition, which results in the disclosure of usernames, cleartext passwords, device configurations, and device API keys for firewalls running PAN-OS software.

💻 الأنظمة المتأثرة

Palo Alto PAN-OS | Palo Alto Networks

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2025-0107

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2025-0107 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←