An Improper Neutralization of Input During Web Page...
Moderate severity
Unreviewed
Published
Mar 28, 2025
to the GitHub Advisory Database
Description
Published by the National Vulnerability Database
Mar 28, 2025
Published to the GitHub Advisory Database
Mar 28, 2025
An Improper Neutralization of Input During Web Page Generation in FortiClientEMS version 6.2.0 may allow a remote attacker to execute unauthorized code by injecting malicious payload in the user profile of a FortiClient instance being managed by the vulnerable system.
References