Arbitrary JavaScript and HTML Injection in GlobalProtect Portal Login Page

Arbitrary JavaScript and HTML Injection in GlobalProtect Portal Login Page

CVE-2018-10141 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

GlobalProtect Portal Login page in Palo Alto Networks PAN-OS before 8.1.4 allows an unauthenticated attacker to inject arbitrary JavaScript or HTML.

Learn more about our Cis Benchmark Audit For Palo Alto Networks.