Cross-Site Scripting Vulnerability in Fortinet FortiAuthenticator 3.0.0
CVE-2015-1459
Currently unrated
Summary
A Cross-Site Scripting (XSS) vulnerability exists in Fortinet FortiAuthenticator 3.0.0, allowing remote attackers to inject arbitrary scripts or HTML through the operation parameter in the cert/scep/ component. This exploitation could lead to unauthorized access or manipulation of user sessions, highlighting the importance of securing web applications against such vulnerabilities. Organizations using this product should consider implementing security measures and applying patches to mitigate potential risks.
References
Timeline
Vulnerability published
Vulnerability Reserved