PAN-SA-2016-0018MediumDisclosed before NVD

PAN-SA-2016-0018 WildFire Cross-Site Scripting Vulnerability

Published
August 12, 2016
Last Modified
August 12, 2016

📋 Description

A Palo Alto Networks firewall displaying a WildFire cloud integrated report is susceptible to a cross-site scripting condition (Ref # WTC-3355). A sample analyzed by the WildFire cloud could trigger a cross-site scripting attack against a firewall administrator who is displaying a WildFire report. This vulnerability is restricted to the context in which the report is parsed by the cloud. This issue affects Palo Alto Networks hosted WildFire cloud from January to August 9th 2016

🎯 Affected products1

  • WildFire Cloud

✅ Remediation

Palo Alto Networks hosted WildFire cloud starting August 10th 2016. Users do not need to take action. Workarounds and mitigations: N/A

🔗 References (1)