CVE-2014-0331 Information

Description

Cross-site scripting (XSS) vulnerability in the web administration interface in FortiADC with firmware before 3.2.1 allows remote attackers to inject arbitrary web script or HTML via the locale parameter to gui_partA/.

Reference

http://seclists.org/fulldisclosure/2014/Apr/53 http://www.fortiguard.com/advisory/FG-IR-14-004 http://www.kb.cert.org/vuls/id/667340 http://www.securityfocus.com/bid/66642 http://www.securitytracker.com/id/1030018

Share on: