CVE-2019-17651

CVE-2019-17651

An Improper Neutralization of Input vulnerability in the description and title parameters of a Device Maintenance Schedule in FortiSIEM version 5.2.5 and below may allow a remote authenticated attacker to perform a Stored Cross Site Scripting attack (XSS) by injecting malicious JavaScript code into the description field of a Device Maintenance schedule.

Source: CVE-2019-17651

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다