Security Advisory

CVE-2015-7363

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2016-10-07 14:00:00
Last updated 2024-08-06 07:43:46
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in the advanced settings page in Fortinet FortiManager 5.x before 5.0.12 and 5.2.x before 5.2.3, in hardware models with a hard disk, and FortiAnalyzer 5.x before 5.0.13 and 5.2.x before 5.2.3 allows remote administrators to inject arbitrary web script or HTML via vectors related to report filters.