CyberSec.Space Logo
Back to CVE Browser

CVE-2020-12817

HIGH
8.8
CVSS Severity Score
EPSS Score0.0090%
EPSS Percentile11.42th
PublishedSep 24, 2020
Last ModifiedNov 21, 2024

Vulnerability Description

An improper neutralization of input vulnerability in FortiAnalyzer before 6.4.1 and 6.2.5 may allow a remote authenticated attacker to inject script related HTML tags via Name parameter of Storage Connectors.

Affected Platforms (CPE)

πŸ“¦
Fortinet

Fortianalyzer

= 6.2.5
πŸ“¦
Fortinet

Fortianalyzer

= 6.4.0
πŸ“¦
Fortinet

Fortianalyzer

= 6.4.1
πŸ“¦
Fortinet

Fortitester

<= 3.7.0
πŸ“¦
Fortinet

Fortitester

= 3.8.0

References & Advisories

Related Vulnerabilities