CVE-2019-1567Medium

CVE-2019-1567 Stored Cross-Site Scripting in Expedition Migration Tool

Published
February 28, 2019
Last Modified
February 28, 2019

🔗 CVE IDs covered (1)

📋 Description

A stored cross-site scripting (XSS) vulnerability exists in the Palo Alto Networks Migration Tool (“Expedition”). (Ref # MT-908/ CVE-2019-1567) Successful exploitation of this issue may allow an authenticated attacker to inject arbitrary JavaScript or HTML in the User Mapping Settings. This issue affects Expedition 1.1.6 and earlier

🎯 Affected products1

  • Expedition

✅ Remediation

Expedition 1.1.7 and later Workarounds and mitigations: N/A

🔗 References (1)