CVE-2010-0475
Palo Alto Networks Firewall < 3.0.8 - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in esp/editUser.esp in the Palo Alto Networks firewall 3.0.x before 3.0.9 and 3.1.x before 3.1.1 allows remote attackers to inject arbitrary web script or HTML via the role parameter.
Exploits (1)
exploitdb
WRITEUP
VERIFIED
by Jeromie Jackson · textwebappshardware
https://www.exploit-db.com/exploits/12660
References (4)
Scores
EPSS
0.0020
EPSS Percentile
41.7%
Classification
CWE
CWE-79
Status
published
Affected Products (2)
palo_alto_networks/firewall
< 3.0.8
n/a/n/a
Timeline
Published
May 14, 2010
Tracked Since
Feb 18, 2026