A Cross-site Scripting (XSS) vulnerability in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.0 to 5.6.7, 5.4.0 to 5.4.12, 5.2 and below and Fortinet FortiProxy 2.0.0, 1.2.8 and below under SSL VPN web portal allows attacker to execute unauthorized malicious script code via the error or message handling parameters.
Metrics
Affected Vendors & Products
References
History
Fri, 25 Oct 2024 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: fortinet
Published: 2019-06-04T20:12:06
Updated: 2024-10-25T14:06:52.781Z
Reserved: 2018-07-06T00:00:00
Link: CVE-2018-13380
Vulnrichment
Updated: 2024-08-05T09:00:34.992Z
NVD
Status : Analyzed
Published: 2019-06-04T21:29:00.267
Modified: 2021-04-06T12:56:42.507
Link: CVE-2018-13380
Redhat
No data.