Total vulnerabilities in the database
An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in FortiOS version 7.0.5 and prior and 6.4.9 and prior may allow an unauthenticated remote attacker to perform a reflected cross site scripting (XSS) attack in the captive portal authentication replacement page.
Software | From | Fixed in |
---|---|---|
fortinet / fortios | 7.0.0 | 7.0.5.x |
fortinet / fortios | - | 6.4.9.x |