Security Advisory

CVE-2024-0007

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-02-14 17:32:08
Last updated 2024-08-01 17:41:15
Assigner palo_alto
State PUBLISHED

Description

A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software enables a malicious authenticated read-write administrator to store a JavaScript payload using the web interface on Panorama appliances. This enables the impersonation of another authenticated administrator.