Total vulnerabilities in the database
A reflected cross-site scripting (XSS) vulnerability in the Captive Portal feature of Palo Alto Networks PAN-OS software can allow a JavaScript payload to be executed in the context of an authenticated Captive Portal user’s browser when they click on a specifically crafted link.
Software | From | Fixed in |
---|---|---|
paloaltonetworks / pan-os | 8.1.0 | 8.1.24.x |
paloaltonetworks / pan-os | 9.0.0 | 9.0.17.x |
paloaltonetworks / pan-os | 9.1.0 | 9.1.16.x |
paloaltonetworks / pan-os | 10.0.0 | 10.0.11.x |
paloaltonetworks / pan-os | 10.1.0 | 10.1.6.x |
paloaltonetworks / pan-os | 10.2.0 | 10.2.2.x |