← Back to CVE List

CVE-2018-9186

Published: 2018-05-31T22:29Z
Last Modified: 2024-11-21T04:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
A cross-site scripting (XSS) vulnerability in Fortinet FortiAuthenticator in versions 4.0.0 to before 5.3.0 "CSRF validation failure" page allows attacker to execute unauthorized script code via inject malicious scripts in HTTP referer header. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt