CVE Database
/

CVE-2017-3125

Back to search

CVE-2017-3125

Published: Apr 12, 2017

Modified: Oct 25, 2024

PUBLISHED

Description

An unauthenticated XSS vulnerability with FortiMail 5.0.0 - 5.2.9 and 5.3.0 - 5.3.8 could allow an attacker to execute arbitrary scripts in the security context of the browser of a victim logged in FortiMail, assuming the victim is social engineered into clicking an URL crafted by the attacker.

VendorProductVersions

Fortinet

FortiMail

affected
5.0.0 -> 5.2.9, 5.3.0 -> 5.3.8

References

97474
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now