CVE-2022-0020: Cortex XSOAR: Stored Cross-Site Scripting (XSS) Vulnerability in Web Interface
A stored cross-site scripting (XSS) vulnerability in Palo Alto Network Cortex XSOAR web interface enables an authenticated network-based attacker to store a persistent javascript payload that will perform arbitrary actions in the Cortex XSOAR web interface on behalf of authenticated administrators who encounter the payload during normal operations. This issue impacts: All builds of Cortex XSOAR 6.1.0; Cortex XSOAR 6.2.0 builds earlier than build 1958888.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2022-0020?
CVE-2022-0020 is a stored cross-site scripting (XSS) vulnerability in Palo Alto Network Cortex XSOAR web interface.
How does CVE-2022-0020 affect Palo Alto Network Cortex XSOAR?
CVE-2022-0020 allows an authenticated network-based attacker to store a persistent javascript payload in the Cortex XSOAR web interface and perform arbitrary actions on behalf of authenticated administrators.
What is the severity of CVE-2022-0020?
The severity of CVE-2022-0020 is medium with a CVSS score of 5.4.
Which versions of Palo Alto Network Cortex XSOAR are affected by CVE-2022-0020?
Palo Alto Network Cortex XSOAR versions 6.1.0, 6.2.0, and potentially others are affected by CVE-2022-0020.
How can I fix CVE-2022-0020 in Palo Alto Network Cortex XSOAR?
To fix CVE-2022-0020, a patch or update from Palo Alto Networks should be installed to address the vulnerability.