
Automated reflected XSS detection tool for CVE-2025-0133 targeting Palo Alto Networks GlobalProtect portal login pages with HTML and JavaScript context payloads.
Author: Derek Odiorne
Date: 2025-05-23
Severity: Medium
Tested Against: Palo Alto Networks GlobalProtect Portal (PAN-OS)
This script performs safe, authorized testing for the vulnerability CVE-2025-0133, a reflected Cross-Site Scripting (XSS) issue in the GlobalProtect portal and gateway login pages of Palo Alto Networks' PAN-OS software.
The tool tests multiple common parameters with two context-specific payloads:
<script>alert()</script>)j\";-alert()...)The results are colorized for clarity and saved in a timestamped log file.
requestscoloramaInstall dependencies (if needed):
pip install requests colorama