PAN-OS: Stored Cross-Site Scripting (XSS) Vulnerability in the Panorama Web Interface
Vulnerability Description
A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software on Panorama appliances enables an authenticated read-write administrator to store a JavaScript payload in the web interface that will execute in the context of another administrator’s browser when viewed.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2023-0007
Credits & Attribution
The following person or organization is credited with identifying this vulnerability, as recorded in the NVD database:
- Colin McQueen
More from Palo Alto Networks
View All →Affected Vendor
Palo Alto Networks
View all reports →