CVE-2021-3052
A reflected cross-site scripting (XSS) vulnerability in the Palo Alto Network PAN-OS web interface enables an authentica
A reflected cross-site scripting (XSS) vulnerability in the Palo Alto Network PAN-OS web interface enables an authenticated network-based attacker to mislead another authenticated PAN-OS administrator to click on a specially crafted link that performs arbitrary actions in the PAN-OS web interface as the targeted authenticated administrator. This issue impacts: PAN-OS 8.1 versions earlier than 8.1.20.
PAN-OS 9.0 versions earlier than 9.0.14.
PAN-OS 9.1 versions earlier than 9.1.10.
PAN-OS 10.0 versions earlier than 10.0.2. This issue does not affect Prisma Access.
HIGH · CVSS 8
EPSS 0.00634
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0