Total vulnerabilities in the database
A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiOS 6.0.7 - 6.0.15, 6.2.2 - 6.2.12, 6.4.0 - 6.4.9 and 7.0.0 - 7.0.3 allows a privileged attacker to execute unauthorized code or commands via storing malicious payloads in replacement messages.
Software | From | Fixed in |
---|---|---|
fortinet / fortios | 7.0.0 | 7.0.3.x |
fortinet / fortios | 6.4.0 | 6.4.9.x |
fortinet / fortios | 6.2.2 | 6.2.12.x |
fortinet / fortios | 6.0.7 | 6.0.15.x |