imPC@ndo IT

Tracker / CVE-2018-7636

CVE-2018-7636

Medium 6.1

The URL filtering "continue page" hosted by PAN-OS 8.0.10 and earlier may allow an attacker to inject arbitrary JavaScript or HTML via specially crafted URLs.

Affected products and versions

paloaltonetworks pan-os

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References