A Cross-site Scripting (XSS) vulnerability exists in FortiManager 5.2.1 and earlier and 5.0.10 and earlier via an unspecified parameter in the FortiWeb auto update service page.
2020-02-04T20:15:11.433
2024-11-21T02:29:28.647
Modified
CVSSv3.1: 5.4 (MEDIUM)
AV:N/AC:M/Au:S/C:N/I:P/A:N
6.8
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | fortinet | fortimanager | ≤ 5.0.10 | Yes |
Application | fortinet | fortimanager | ≤ 5.2.1 | Yes |