ZeroHour

CVE-2017-7340

CVSS 3.0
6.1 medium
EPSS
<1%p50
Published
()
Modified
Description

A Cross-Site Scripting vulnerability in Fortinet FortiPortal versions 4.0.0 and below allows an attacker to execute unauthorized code or commands via the applicationSearch parameter in the FortiView functionality.

Vendors
fortinet
Products
fortiportal
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.