CVE-2024-35280 Information

Description

A improper neutralization of input during web page generation (‘cross-site scripting’) in Fortinet FortiDeceptor 3.x all versions 4.x all versions 5.0 all versions 5.1 all versions version 5.2.0 and version 5.3.0 may allow an attacker to perform a reflected cross-site scripting attack in the recovery endpoints

Reference

https://fortiguard.fortinet.com/psirt/FG-IR-24-010

Share on: