6.1
CVSSv3

CVE-2023-26206

Published: 15/02/2024 Updated: 01/03/2024
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiNAC 9.4.0 - 9.4.2, 9.2.0 - 9.2.8, 9.1.0 - 9.1.10 and 7.2.0 allows an malicious user to execute unauthorized code or commands via the name fields observed in the policy audit logs.

Vulnerable Product Search on Vulmon Subscribe to Product

fortinet fortinac

fortinet fortinac 7.2.0