PT-2025-1075 · Palo Alto Networks · Palo Alto Networks Expedition

Published

2025-01-08

·

Updated

2026-01-23

·

CVE-2025-0106

CVSS v4.0

6.9

Medium

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N/AU:N/R:U/V:C/RE:H/U:Green
Name of the Vulnerable Software and Affected Versions Palo Alto Networks Expedition (affected versions not specified)
Description The issue is related to a wildcard expansion vulnerability in Palo Alto Networks Expedition. This vulnerability allows an unauthenticated attacker to enumerate files on the host filesystem, potentially compromising the integrity of protected information. The vulnerability can be exploited remotely.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Neutralization of Wildcards

Weakness Enumeration

Related Identifiers

BDU:2025-00310
CVE-2025-0106

Affected Products

Palo Alto Networks Expedition