CVE-2025-0106: Expedition: Wildcard Expansion Vulnerability
Published Jan 11, 2025
·Updated
A wildcard expansion vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to enumerate files on the host filesystem.
Affected Software
2 affected components
Palo Alto Networks Expedition
Palo Alto Networks Expedition<1.2.101
Event History
Jan 11, 2025
CVE Published
via MITRE·03:02 AM
Data Sourced
via MITRE·03:02 AM
DescriptionWeakness
Data Sourced
via NVD·03:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-0106?
CVE-2025-0106 has been classified with a high severity due to its potential for unauthorized file enumeration.
2
How do I fix CVE-2025-0106?
To fix CVE-2025-0106, apply the latest security patches provided by Palo Alto Networks for the Expedition software.
3
Who is affected by CVE-2025-0106?
CVE-2025-0106 affects all users of Palo Alto Networks Expedition that have not implemented the necessary security updates.
4
What type of attack can exploit CVE-2025-0106?
CVE-2025-0106 can be exploited by unauthenticated attackers to perform file enumeration attacks on the host filesystem.
5
When was CVE-2025-0106 published?
CVE-2025-0106 was published in 2025 as part of ongoing vulnerability tracking by security organizations.