A stored Cross-site Scripting (XSS) vulnerability in Fortinet FortiWeb webUI Certificate View page in 5.8.0, 5.7.1 and earlier, allows attackers to inject arbitrary web script or HTML via special crafted malicious certificate import.
History

Fri, 25 Oct 2024 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: fortinet

Published: 2017-11-22T17:00:00Z

Updated: 2024-10-25T14:10:30.990Z

Reserved: 2017-04-12T00:00:00

Link: CVE-2017-7736

cve-icon Vulnrichment

Updated: 2024-08-05T16:12:28.232Z

cve-icon NVD

Status : Modified

Published: 2017-11-22T17:29:00.563

Modified: 2024-11-21T03:32:33.313

Link: CVE-2017-7736

cve-icon Redhat

No data.