5.4
CVSSv3

CVE-2022-29057

Published: 19/07/2022 Updated: 27/07/2022
CVSS v3 Base Score: 5.4 | Impact Score: 2.7 | Exploitability Score: 2.3
VMScore: 0

Vulnerability Summary

A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiEDR version 5.1.0, 5.0.0 up to and including 5.0.3 Patch 6 and 4.0.0 allows a remote authenticated malicious user to perform a reflected cross site scripting attack (XSS) by injecting malicious payload into the Management Console via various endpoints.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fortinet fortiedr 4.0.0

fortinet fortiedr 5.0.3

fortinet fortiedr

fortinet fortiedr 5.1.0