Vulnerabilities
Vulnerable Software
Fortinet:  >> Fortianalyzer Firmware  Security Vulnerabilities
Multiple cross-site scripting (XSS) vulnerabilities in the Web User Interface in Fortinet FortiManager before 5.0.7 and FortiAnalyzer before 5.0.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2014-2334 and CVE-2014-2335.
CVSS Score
4.3
EPSS Score
0.003
Published
2014-10-31
cgi-bin/module//sysmanager/admin/SYSAdminUserDialog in Fortinet FortiAnalyzer before 5.0.5 does not properly validate the csrf_token parameter, which allows remote attackers to perform cross-site request forgery (CSRF) attacks.
CVSS Score
6.8
EPSS Score
0.003
Published
2013-11-20


Contact Us

Shodan ® - All rights reserved