The PAN-OS external dynamics lists in PAN-OS 7.1.21 and earlier, PAN-OS 8.0.14 and earlier, and PAN-OS 8.1.5 and earlier, may allow an attacker that is authenticated in Next Generation Firewall with write privileges to External Dynamic List configuration to inject arbitrary JavaScript or HTML.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: palo_alto

Published: 2019-01-23T00:00:00

Updated: 2020-02-17T16:03:48

Reserved: 2018-12-06T00:00:00


Link: CVE-2019-1565

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2019-01-30T20:29:00.273

Modified: 2020-02-17T16:15:27.270


Link: CVE-2019-1565

JSON object: View

cve-icon Redhat Information

No data.

CWE