cbcvebase.
CVE-2017-7732
published 2017-10-26

CVE-2017-7732: A reflected Cross-Site Scripting (XSS) vulnerability in Fortinet FortiMail 5.1 and earlier, 5.2.0 through 5.2.9, and 5.3.0 through 5.3.9 customized…

medium6.1CVSS 3.0
AVNACLPRNUIRSCCLILAN
A reflected Cross-Site Scripting (XSS) vulnerability in Fortinet FortiMail 5.1 and earlier, 5.2.0 through 5.2.9, and 5.3.0 through 5.3.9 customized pre-authentication webmail login page allows attacker to inject arbitrary web script or HTML via crafted HTTP requests.

Affected

38 ranges· showing 25
VendorProductVersion rangeFixed in
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail
fortinetfortimail