CVE-2019-1565
30.01.2019, 20:29
The PAN-OS external dynamics lists in PAN-OS 7.1.21 and earlier, PAN-OS 8.0.14 and earlier, and PAN-OS 8.1.5 and earlier, may allow an attacker that is authenticated in Next Generation Firewall with write privileges to External Dynamic List configuration to inject arbitrary JavaScript or HTML.
Vendor | Product | Version |
---|---|---|
paloaltonetworks | pan-os | 𝑥 ≤ 7.1.21 |
paloaltonetworks | pan-os | 7.1.22 ≤ 𝑥 ≤ 8.0.14 |
paloaltonetworks | pan-os | 8.0.15 ≤ 𝑥 ≤ 8.1.5 |
𝑥
= Vulnerable software versions