CVE-2024-0007

Publication date

2024-02-14 17:32:08

Family

palo_alto

State

PUBLISHED

Description

A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software enables a malicious authenticated read-write administrator to store a JavaScript payload using the web interface on Panorama appliances. This enables the impersonation of another authenticated administrator.