CVE-2020-6647
published 2020-04-07CVE-2020-6647: An improper neutralization of input vulnerability in the dashboard of FortiADC may allow an authenticated attacker to perform a cross site scripting attack…
medium5.4CVSS 3.1
AVNACLPRLUIRSCCLILAN
An improper neutralization of input vulnerability in the dashboard of FortiADC may allow an authenticated attacker to perform a cross site scripting attack (XSS) via the name parameter.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | fortiadc | — | — |
| fortinet | fortiadc_firmware | <= 5.3.4 | — |
| fortinet | fortiadc_firmware | — | — |
| fortinet | fortiadcfirmware | — | — |