Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in the web administration interface in FortiADC with firmware before 3.2.1 allows remote attackers to inject arbitrary web script or HTML via the locale parameter to gui_partA/.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Fortinet FortiADC Web管理界面跨站脚本漏洞
Vulnerability Description
FortiADC是美国飞塔(Fortinet)公司的一款应用交付控制器,它能够优化网络可用性、用户体验、移动的性能和基于云端的企业应用控制,并增强服务器的效率以及减少数据中心的网络复杂性与成本。 使用3.2.1之前版本固件的FortiADC中的Web管理界面存在跨站脚本漏洞,该漏洞源于gui_partA/ URI没有充分过滤‘locale’参数。远程攻击者可利用该漏洞注入任意Web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A