Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2019-6697


An Improper Neutralization of Input vulnerability affecting FortiGate version 6.2.0 through 6.2.1, 6.0.0 through 6.0.6 in the hostname parameter of a DHCP packet under DHCP monitor page may allow an unauthenticated attacker in the same network as the FortiGate to perform a Stored Cross Site Scripting attack (XSS) by sending a crafted DHCP packet.


Published

2025-03-17T14:15:16.567

Last Modified

2025-07-24T20:15:34.693

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.3 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-79

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System fortinet fortios < 6.0.7 Yes
Operating System fortinet fortios < 6.2.2 Yes

References