Description
A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiAnalyzer version 6.0.6 and below, version 6.4.4 allows attacker to execute unauthorized code or commands via specifically crafted requests to the web GUI.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-5097 | A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiAnalyzer version 6.0.6 and below, version 6.4.4 allows attacker to execute unauthorized code or commands via specifically crafted requests to the web GUI. |
References
| Link | Providers |
|---|---|
| https://fortiguard.com/advisory/FG-IR-20-092 |
|
History
Fri, 25 Oct 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-10-25T13:47:44.558Z
Reserved: 2020-05-12T00:00:00.000Z
Link: CVE-2020-12814
Updated: 2024-08-04T12:04:22.850Z
Status : Modified
Published: 2021-11-02T18:15:07.730
Modified: 2024-11-21T05:00:19.660
Link: CVE-2020-12814
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD