### [CVE-2018-10141](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-10141) ![](https://img.shields.io/static/v1?label=Product&message=Palo%20Alto%20Networks&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=Cross-Site%20Scripting%20(XSS)&color=brighgreen) ### Description GlobalProtect Portal Login page in Palo Alto Networks PAN-OS before 8.1.4 allows an unauthenticated attacker to inject arbitrary JavaScript or HTML. ### POC #### Reference No PoCs from references. #### Github - https://github.com/ARPSyndicate/kenzer-templates - https://github.com/Elsfa7-110/kenzer-templates