← Back to CVE List

CVE-2022-43955

Published: 2023-04-11T17:15Z
Last Modified: 2024-11-21T07:27Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An improper neutralization of input during web page generation [CWE-79] in the FortiWeb web interface 7.0.0 through 7.0.3, 6.3.0 through 6.3.21, 6.4 all versions, 6.2 all versions, 6.1 all versions and 6.0 all versions may allow an unauthenticated and remote attacker to perform a reflected cross site scripting attack (XSS) via injecting malicious payload in log entries used to build report. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt