CVE-2018-10142: Infoleak
Published Nov 27, 2018
·Updated
The Expedition Migration tool 1.0.106 and earlier may allow an unauthenticated attacker to enumerate files on the operating system.
Affected Software
1 affected component
Palo Alto Networks Expedition=1.0.106
Event History
Nov 27, 2018
CVE Published
08:29 PM
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-10142?
CVE-2018-10142 has a high severity rating due to its potential to allow unauthenticated file enumeration by attackers.
2
How do I fix CVE-2018-10142?
To fix CVE-2018-10142, upgrade the Expedition Migration tool to version 1.0.107 or later.
3
What systems are affected by CVE-2018-10142?
CVE-2018-10142 affects the Expedition Migration tool versions 1.0.106 and earlier.
4
Can CVE-2018-10142 be exploited remotely?
Yes, CVE-2018-10142 can be exploited remotely as it allows unauthenticated attackers to access file information.
5
Is user authentication required to exploit CVE-2018-10142?
No, CVE-2018-10142 can be exploited by attackers without needing user authentication.