Page 6 of 26 results (0.006 seconds)

CVSS: 6.1EPSS: 0%CPEs: 2EXPL: 0

An Improper Neutralization of Input During Web Page Generation ("Cross-site Scripting") in Fortinet FortiNAC 8.3.0 to 8.3.6 and 8.5.0 admin webUI may allow an unauthenticated attacker to perform a reflected XSS attack via the search field in the webUI. Una neutralización inadecuada de la entrada durante la generación de páginas web ("Cross-site Scripting") en Fortinet FortiNAC 8.3.0 a 8.3.6 y 8.5.0 admin webUI puede permitir que un atacante no autenticado realice un ataque XSS reflejado a través del campo de búsqueda en el webUI. • https://fortiguard.com/advisory/FG-IR-19-140 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •