
Scanner CVE-2025-0133 | Vérificateur XSS Palo Alto GlobalProtect
Scanner de vulnérabilité XSS réfléchi Palo Alto PAN-OS GlobalProtect.
pip install git+https://github.com/radityahack/cve-2025-0133.git
Utilisable ensuite n'importe où :
cve-2025-0133 -u 192.168.1.1
git clone https://github.com/radityahack/cve-2025-0133.git
cd cve-2025-0133
pip install -r requirements.txt
python cve_2025_0133.py -u 192.168.1.1
pip install -e .
usage: cve_2025_0133.py [-h] (-u URL | -l LIST) [-t THREADS] [--proxy PROXY]
[--timeout TIMEOUT] [-o OUTPUT]
CVE-2025-0133 - Palo Alto GlobalProtect XSS Scanner
options:
-h, --help show this help message and exit
-u, --url URL Single target (IP or URL)
-l, --list LIST File containing list of targets
-t, --threads THREADS Number of threads (default: 10)
--proxy PROXY Proxy (e.g. http://127.0.0.1:8080)
--timeout TIMEOUT Request timeout in seconds (default: 10)
-o, --output OUTPUT Save vulnerable exploit URLs to file
# Single target
cve-2025-0133 -u 203.0.113.1
# Mass scan from file
cve-2025-0133 -l targets.txt
# With proxy (Burp Suite)
cve-2025-0133 -u https://vpn.target.com --proxy http://127.0.0.1:8080
# 50 threads + save results
cve-2025-0133 -l targets.txt -t 50 -o vulnerable.txt
╔══════════════════════════════════════════╗
║ CVE-2025-0133 Scanner ║
║ Palo Alto GlobalProtect XSS Checker ║
╚══════════════════════════════════════════╝
@radityahack
[*] Targets loaded: 50
[*] Checking...
[VULNERABLE] https://203.0.113.1
[NOT VULN] https://203.0.113.2
[TIMEOUT] https://203.0.113.3
[*] Scan complete.
[*] Total: 50 | Vulnerable: 3 | Not vulnerable: 47
[!] VULNERABLE TARGETS:
1. https://203.0.113.1/ssl-vpn/getconfig.esp?...
Cet outil est destiné uniquement aux tests de sécurité autorisés. Le scan non autorisé de systèmes que vous ne possédez pas ou pour lesquels vous n'avez pas d'autorisation explicite est illégal. L'auteur n'est pas responsable d'une mauvaise utilisation.
MIT