
Escáner de CVE-2025-0133 | Comprobador de XSS de Palo Alto GlobalProtect
Escáner de vulnerabilidad de XSS reflejado en Palo Alto PAN-OS GlobalProtect.
pip install git+https://github.com/radityahack/cve-2025-0133.git
Luego úsalo en cualquier lugar:
cve-2025-0133 -u 192.168.1.1
git clone https://github.com/radityahack/cve-2025-0133.git
cd cve-2025-0133
pip install -r requirements.txt
python cve_2025_0133.py -u 192.168.1.1
pip install -e .
usage: cve_2025_0133.py [-h] (-u URL | -l LIST) [-t THREADS] [--proxy PROXY]
[--timeout TIMEOUT] [-o OUTPUT]
CVE-2025-0133 - Palo Alto GlobalProtect XSS Scanner
options:
-h, --help show this help message and exit
-u, --url URL Single target (IP or URL)
-l, --list LIST File containing list of targets
-t, --threads THREADS Number of threads (default: 10)
--proxy PROXY Proxy (e.g. http://127.0.0.1:8080)
--timeout TIMEOUT Request timeout in seconds (default: 10)
-o, --output OUTPUT Save vulnerable exploit URLs to file
# Single target
cve-2025-0133 -u 203.0.113.1
# Mass scan from file
cve-2025-0133 -l targets.txt
# With proxy (Burp Suite)
cve-2025-0133 -u https://vpn.target.com --proxy http://127.0.0.1:8080
# 50 threads + save results
cve-2025-0133 -l targets.txt -t 50 -o vulnerable.txt
╔══════════════════════════════════════════╗
║ CVE-2025-0133 Scanner ║
║ Palo Alto GlobalProtect XSS Checker ║
╚══════════════════════════════════════════╝
@radityahack
[*] Targets loaded: 50
[*] Checking...
[VULNERABLE] https://203.0.113.1
[NOT VULN] https://203.0.113.2
[TIMEOUT] https://203.0.113.3
[*] Scan complete.
[*] Total: 50 | Vulnerable: 3 | Not vulnerable: 47
[!] VULNERABLE TARGETS:
1. https://203.0.113.1/ssl-vpn/getconfig.esp?...
Esta herramienta es únicamente para pruebas de seguridad autorizadas. El escaneo no autorizado de sistemas que no posees o para los que no tienes permiso explícito de pruebas es ilegal. El autor no es responsable del mal uso.
MIT