Vulnerability Details CVE-2017-7733
A Cross-Site-Scripting (XSS) vulnerability in Fortinet FortiOS 5.4.0 to 5.4.5 and 5.6.0 allows a remote unauthenticated attacker to execute arbitrary javascript code via webUI "Login Disclaimer" redir parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 56.7%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2017-7733
-
cpe:2.3:o:fortinet:fortios:5.4.0
-
cpe:2.3:o:fortinet:fortios:5.4.1
-
cpe:2.3:o:fortinet:fortios:5.4.2
-
cpe:2.3:o:fortinet:fortios:5.4.3
-
cpe:2.3:o:fortinet:fortios:5.4.4
-
cpe:2.3:o:fortinet:fortios:5.4.5
-
cpe:2.3:o:fortinet:fortios:5.6.0