Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j64m-j3jq-cvj5

Опубликовано: 19 июл. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.1

Описание

An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in FortiOS version 7.0.5 and prior and 6.4.9 and prior may allow an unauthenticated remote attacker to perform a reflected cross site scripting (XSS) attack in the captive portal authentication replacement page.

An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in FortiOS version 7.0.5 and prior and 6.4.9 and prior may allow an unauthenticated remote attacker to perform a reflected cross site scripting (XSS) attack in the captive portal authentication replacement page.

EPSS

Процентиль: 69%
0.00589
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79

Связанные уязвимости

CVSS3: 4.7
nvd
больше 3 лет назад

An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in FortiOS version 7.0.5 and prior and 6.4.9 and prior may allow an unauthenticated remote attacker to perform a reflected cross site scripting (XSS) attack in the captive portal authentication replacement page.

EPSS

Процентиль: 69%
0.00589
Низкий

6.1 Medium

CVSS3

Дефекты

CWE-79