CVE-2023-46713
13.12.2023, 07:15
An improper output neutralization for logs in Fortinet FortiWeb 6.2.0 - 6.2.8, 6.3.0 - 6.3.23, 7.0.0 - 7.0.9, 7.2.0 - 7.2.5 and 7.4.0 may allow an attacker to forge traffic logs via a crafted URL of the web application.Enginsight
| Vendor | Product | Version |
|---|---|---|
| fortinet | fortiweb | 6.2.0 ≤ 𝑥 ≤ 6.2.8 |
| fortinet | fortiweb | 6.3.0 ≤ 𝑥 ≤ 6.3.23 |
| fortinet | fortiweb | 7.0.0 ≤ 𝑥 ≤ 7.0.9 |
| fortinet | fortiweb | 7.2.0 ≤ 𝑥 ≤ 7.2.5 |
| fortinet | fortiweb | 7.4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration