CVE-2020-12815
24.09.2020, 18:15
An improper neutralization of input vulnerability in FortiTester before 3.9.0 may allow a remote authenticated attacker to inject script related HTML tags via IPv4/IPv6 address fields.
Vendor | Product | Version |
---|---|---|
fortinet | fortianalyzer | 𝑥 ≤ 6.2.5 |
fortinet | fortianalyzer | 6.4.0 ≤ 𝑥 ≤ 6.4.1 |
fortinet | fortitester | 𝑥 ≤ 3.7.0 |
fortinet | fortitester | 3.8.0 |
𝑥
= Vulnerable software versions