Lucene search

K
fortinetFortiGuard LabsFG-IR-19-197
HistoryJan 27, 2020 - 12:00 a.m.

FortiSIEM - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

2020-01-2700:00:00
FortiGuard Labs
www.fortiguard.com
12

EPSS

0.001

Percentile

29.2%

An Improper Neutralization of Input vulnerability in the description and title parameters of a Device Maintenance Schedule in FortiSIEM may allow a remote authenticated attacker to perform a Stored Cross Site Scripting attack (XSS) by injecting malicious JavaScript code into the description field of a Device Maintenance schedule.

EPSS

0.001

Percentile

29.2%

Related for FG-IR-19-197