CVE-2023-46713
13.12.2023, 07:15
An improper output neutralization for logs in Fortinet FortiWeb 6.2.0 - 6.2.8, 6.3.0 - 6.3.23, 7.0.0 - 7.0.9, 7.2.0 - 7.2.5 and 7.4.0 may allow an attacker to forge traffic logs via a crafted URL of the web application.Enginsight
Vendor | Product | Version |
---|---|---|
fortinet | fortiweb | 6.2.0 ≤ 𝑥 ≤ 6.2.8 |
fortinet | fortiweb | 6.3.0 ≤ 𝑥 ≤ 6.3.23 |
fortinet | fortiweb | 7.0.0 ≤ 𝑥 ≤ 7.0.9 |
fortinet | fortiweb | 7.2.0 ≤ 𝑥 ≤ 7.2.5 |
fortinet | fortiweb | 7.4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration