Description
An improper output neutralization for logs in Fortinet FortiWeb 6.2.0 - 6.2.8, 6.3.0 - 6.3.23, 7.0.0 - 7.0.9, 7.2.0 - 7.2.5 and 7.4.0 may allow an attacker to forge traffic logs via a crafted URL of the web application.
No analysis available yet.
Remediation
Vendor Solution
Please upgrade to FortiWeb version 7.4.1 or above Please upgrade to FortiWeb version 7.2.6 or above
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-50897 | An improper output neutralization for logs in Fortinet FortiWeb 6.2.0 - 6.2.8, 6.3.0 - 6.3.23, 7.0.0 - 7.0.9, 7.2.0 - 7.2.5 and 7.4.0 may allow an attacker to forge traffic logs via a crafted URL of the web application. |
References
| Link | Providers |
|---|---|
| https://fortiguard.com/psirt/FG-IR-23-256 |
|
History
No history.
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-08-02T20:53:21.140Z
Reserved: 2023-10-25T08:43:15.289Z
Link: CVE-2023-46713
No data.
Status : Modified
Published: 2023-12-13T07:15:24.547
Modified: 2024-11-21T08:29:08.233
Link: CVE-2023-46713
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD