Remote Code Execution in Expedition Migration Tool (PAN-SA-2018-0017)

Last revised: 12/11/2018


A remote code execution vulnerability exists in the Palo Alto Networks Migration Tool (“Expedition”). (Ref # MT-794/ CVE-2018-10143)

Severity: High

Successful exploitation of this issue may allow an unauthenticated attacker with remote access to run system level commands on the device hosting this service/application.

Products Affected

Expedition 1.0.107 and earlier. Note that this issue only impacts the Palo Alto Networks Migration Tool (“Expedition”), a tool available from the Palo Alto Networks Live site. This issue does not affect PAN-OS or any other supported product or service. For more information on Expedition, see:

Available Updates

Expedition 1.0.108 and later

Workarounds and Mitigations



Palo Alto Networks would like to thank Reginald Dodd for reporting this issue.