CVE-2020-12814: XSS
Published Nov 2, 2021
·Updated
A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiAnalyzer version 6.0.6 and below, version 6.4.4 allows attacker to execute unauthorized code or commands via specifically crafted requests to the web GUI.
Affected Software
2 affected components
Fortinet Fortianalyzer>=6.0.0<=6.0.6
Fortinet Fortianalyzer=6.4.4
Event History
Nov 2, 2021
CVE Published
via MITRE·05:56 PM
Data Sourced
via MITRE·05:56 PM
DescriptionSeverityWeakness