Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4g23-3mc5-9qf9

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An improper neutralization of input vulnerability [CWE-79] in FortiClientEMS versions 6.4.1 and below and 6.2.9 and below may allow a remote authenticated attacker to inject malicious script/tags via the name parameter of various sections of the server.

An improper neutralization of input vulnerability [CWE-79] in FortiClientEMS versions 6.4.1 and below and 6.2.9 and below may allow a remote authenticated attacker to inject malicious script/tags via the name parameter of various sections of the server.

EPSS

Процентиль: 48%
0.00253
Низкий

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 4.1
nvd
больше 4 лет назад

An improper neutralization of input vulnerability [CWE-79] in FortiClientEMS versions 6.4.1 and below and 6.2.9 and below may allow a remote authenticated attacker to inject malicious script/tags via the name parameter of various sections of the server.

EPSS

Процентиль: 48%
0.00253
Низкий

Дефекты

CWE-79