CVE-2020-6647
- EPSS 0.36%
- Published 07.04.2020 19:15:13
- Last modified 21.11.2024 05:36:05
An improper neutralization of input vulnerability in the dashboard of FortiADC may allow an authenticated attacker to perform a cross site scripting attack (XSS) via the name parameter.
CVE-2020-9286
- EPSS 0.85%
- Published 07.04.2020 19:15:13
- Last modified 21.11.2024 05:40:21
An improper authorization vulnerability in FortiADC may allow a remote authenticated user with low privileges to perform certain actions such as rebooting the system.
CVE-2014-8618
- EPSS 0.26%
- Published 12.05.2015 19:59:01
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in the theme login page in Fortinet FortiADC D models before 4.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVE-2014-8582
- EPSS 0.31%
- Published 01.11.2014 23:55:09
- Last modified 12.04.2025 10:46:40
FortiNet FortiADC-E with firmware 3.1.1 before 4.0.5 and Coyote Point Equalizer with firmware 10.2.0a allows remote attackers to obtain access to arbitrary subnets via unspecified vectors.
CVE-2014-0331
- EPSS 0.37%
- Published 10.04.2014 20:29:20
- Last modified 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in the web administration interface in FortiADC with firmware before 3.2.1 allows remote attackers to inject arbitrary web script or HTML via the locale parameter to gui_partA/.