Lucene search

K
fortinetFortiGuard LabsFG-IR-22-260
HistoryFeb 16, 2023 - 12:00 a.m.

FortiNAC - Multiple Stored and Reflected XSS

2023-02-1600:00:00
FortiGuard Labs
www.fortiguard.com
18
fortinac
stored xss
reflected xss
cwe-79
input neutralization
web page generation
authenticated attacker
http get requests

EPSS

0.001

Percentile

22.6%

Several improper neutralization of inputs during web page generation vulnerability [CWE-79] in FortiNAC may allow an authenticated attacker to perform several XSS attacks via crafted HTTP GET requests.

EPSS

0.001

Percentile

22.6%

Related for FG-IR-22-260