CVE-2022-38379
06.12.2022, 17:15
Improper neutralization of input during web page generation [CWE-79] in FortiSOAR 7.0.0 through 7.0.3 and 7.2.0 may allow an authenticated attacker to inject HTML tags via input fields of various components within FortiSOAR.
Vendor | Product | Version |
---|---|---|
fortinet | fortisoar | 7.0.0 ≤ 𝑥 ≤ 7.0.3 |
fortinet | fortisoar | 7.2.0 |
𝑥
= Vulnerable software versions