Improper neutralization of input during web page generation [CWE-79] in FortiSOAR 7.0.0 up to and including 7.0.3 and 7.2.0 may allow an authenticated malicious user to inject HTML tags via input fields of various components within FortiSOAR.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
fortinet fortisoar 7.2.0 |
||
fortinet fortisoar |