CVE-2024-27780 Information

Description

Multiple Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’) vulnerabilities [CWE-79] in FortiSIEM 7.1 all versions 7.0 all versions 6.7 all versions incident page may allow an authenticated attacker to perform a cross-site scripting attack via crafted HTTP requests.

Reference

https://fortiguard.fortinet.com/psirt/FG-IR-23-324

Share on: