Cross-Site Scripting Vulnerability in Fortinet FortiAuthenticator 3.0.0
CVE-2015-1459

Currently unrated

Key Information:

Vendor
Fortinet
Vendor
CVE Published:
3 February 2015

Summary

A Cross-Site Scripting (XSS) vulnerability exists in Fortinet FortiAuthenticator 3.0.0, allowing remote attackers to inject arbitrary scripts or HTML through the operation parameter in the cert/scep/ component. This exploitation could lead to unauthorized access or manipulation of user sessions, highlighting the importance of securing web applications against such vulnerabilities. Organizations using this product should consider implementing security measures and applying patches to mitigate potential risks.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.