CVE-2010-0475: XSS
Cross-site scripting (XSS) vulnerability in esp/editUser.esp in the Palo Alto Networks firewall 3.0.x before 3.0.9 and 3.1.x before 3.1.1 allows remote attackers to inject arbitrary web script or HTML via the role parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0475?
CVE-2010-0475 is classified as a medium severity vulnerability due to its potential for cross-site scripting (XSS) attacks.
How do I fix CVE-2010-0475?
To fix CVE-2010-0475, upgrade the Palo Alto Networks firewall to version 3.0.9 or 3.1.1 or later.
What does CVE-2010-0475 affect?
CVE-2010-0475 affects Palo Alto Networks firewall versions 3.0.x before 3.0.9 and 3.1.x before 3.1.1.
Can CVE-2010-0475 be exploited remotely?
Yes, CVE-2010-0475 can be exploited remotely by injecting arbitrary web scripts through the role parameter.
Is CVE-2010-0475 a common vulnerability?
CVE-2010-0475 is relatively common among affected versions of Palo Alto Networks firewalls due to the presence of the XSS vulnerability.