CVE Database
/

CVE-2017-7739

Back to search

CVE-2017-7739

Published: Nov 13, 2017

Modified: Oct 25, 2024

PUBLISHED

Description

A reflected Cross-site Scripting (XSS) vulnerability in web proxy disclaimer response web pages in Fortinet FortiOS 5.6.0, 5.4.0 to 5.4.5, 5.2.0 to 5.2.11 allows an unauthenticated attacker to inject arbitrary web script or HTML in the context of the victim's browser via sending a maliciously crafted URL to the victim.

VendorProductVersions

Fortinet, Inc.

FortiOS

affected
5.6.0
affected
5.4.5, 5.4.4, 5.4.3, 5.4.2, 5.4.1, 5.4.0
affected
5.2.11, 5.2.10, 5.2.9, 5.2.8, 5.2.7, 5.2.6, 5.2.5, 5.2.4, 5.2.3, 5.2.2, 5.2.1, 5.2.0

References

101679
vdb-entry
x_refsource_BID
1039741
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now