CVE-2014-4738
- EPSS 0.33%
- Veröffentlicht 11.07.2014 20:55:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple cross-site scripting (XSS) vulnerabilities in FortiGuard FortiWeb 5.0.x, 5.1.x, and 5.2.x before 5.2.1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors to (1) user/ldap_user/check_dlg or (2) user/radius_u...
CVE-2014-3115
- EPSS 0.18%
- Veröffentlicht 08.05.2014 14:29:14
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple cross-site request forgery (CSRF) vulnerabilities in the web administration console in Fortinet FortiWeb before 5.2.0 allow remote attackers to hijack the authentication of administrators via system/config/adminadd and other unspecified vect...
CVE-2014-1955
- EPSS 0.26%
- Veröffentlicht 30.04.2014 14:22:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in FortiGuard FortiWeb before 5.0.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
- EPSS 0.22%
- Veröffentlicht 30.04.2014 14:22:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
CRLF injection vulnerability in FortiGuard FortiWeb before 5.0.3 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.
CVE-2014-1957
- EPSS 0.36%
- Veröffentlicht 30.04.2014 14:22:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
FortiGuard FortiWeb before 5.0.3 allows remote authenticated users to gain privileges via unspecified vectors.
CVE-2014-1458
- EPSS 0.19%
- Veröffentlicht 04.02.2014 21:55:08
- Zuletzt bearbeitet 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in the web administration interface in FortiGuard FortiWeb 5.0.3 and earlier allows remote authenticated administrators to inject arbitrary web script or HTML via unspecified vectors.
CVE-2013-7181
- EPSS 0.81%
- Veröffentlicht 04.02.2014 05:39:08
- Zuletzt bearbeitet 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in user/ldap_user/add in Fortinet FortiOS 5.0.3 allows remote attackers to inject arbitrary web script or HTML via the filter parameter.