Medium severity6.1NVD Advisory· Published Jan 10, 2018· Updated Jun 17, 2026
CVE-2017-16878
CVE-2017-16878
Description
Cross-site scripting (XSS) vulnerability in the Captive Portal function in Palo Alto Networks PAN-OS before 8.0.7 allows remote attackers to inject arbitrary web script or HTML by leveraging an unspecified configuration.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:o:paloaltonetworks:pan-os:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:paloaltonetworks:pan-os:*:*:*:*:*:*:*:*range: <8.0.7
- (no CPE)range: <8.0.7
Patches
Vulnerability mechanics
References
2- www.securitytracker.com/id/1040148nvdThird Party AdvisoryVDB Entry
- security.paloaltonetworks.com/CVE-2017-16878nvd
News mentions
0No linked articles in our index yet.