The PAN-OS response for GlobalProtect Gateway in Palo Alto Networks PAN-OS 6.1.21 and earlier, PAN-OS 7.1.18 and earlier, PAN-OS 8.0.11 and earlier may allow an unauthenticated attacker to inject arbitrary JavaScript or HTML. PAN-OS 8.1 is NOT affected.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: palo_alto

Published: 2018-08-16T18:00:00Z

Updated: 2024-09-17T01:25:36.726Z

Reserved: 2018-04-16T00:00:00

Link: CVE-2018-10139

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-08-16T18:29:00.233

Modified: 2020-02-17T16:15:23.130

Link: CVE-2018-10139

cve-icon Redhat

No data.