CVE-2019-1567Medium
CVE-2019-1567 Stored Cross-Site Scripting in Expedition Migration Tool
Published
February 28, 2019
Last Modified
February 28, 2019
🔗 CVE IDs covered (1)
📋 Description
A stored cross-site scripting (XSS) vulnerability exists in the Palo Alto Networks Migration Tool (“Expedition”). (Ref # MT-908/ CVE-2019-1567) Successful exploitation of this issue may allow an authenticated attacker to inject arbitrary JavaScript or HTML in the User Mapping Settings. This issue affects Expedition 1.1.6 and earlier
🎯 Affected products1
- Expedition
✅ Remediation
Expedition 1.1.7 and later Workarounds and mitigations: N/A