Cross-Site Scripting (XSS) Vulnerability in Fortinet FortiADC 7.0.0 - 7.0.2 and 6.2.0 - 6.2.4

Cross-Site Scripting (XSS) Vulnerability in Fortinet FortiADC 7.0.0 - 7.0.2 and 6.2.0 - 6.2.4

CVE-2022-38374 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiADC 7.0.0 - 7.0.2 and 6.2.0 - 6.2.4 allows an attacker to execute unauthorized code or commands via the URL and User fields observed in the traffic and event logviews.

Learn more about our Cis Benchmark Audit For Fortinet.