Lucene search

K
fortinetFortiGuard LabsFG-IR-23-106
HistorySep 13, 2023 - 12:00 a.m.

Protect

2023-09-1300:00:00
FortiGuard Labs
www.fortiguard.com
16
input neutralization
cross-site scripting
fortios
fortiproxy
gui
authenticated attacker
javascript code execution

EPSS

0.001

Percentile

27.2%

An improper neutralization of input during web page generation (‘Cross-site Scripting’) vulnerability [CWE-79] in FortiOS and FortiProxy GUI may allow an authenticated attacker to trigger malicious JavaScript code execution via crafted guest management setting.

EPSS

0.001

Percentile

27.2%

Related for FG-IR-23-106