Vulnerabilities > Fortinet > Fortiauthenticator

DATE CVE VULNERABILITY TITLE RISK
2018-05-31 CVE-2018-9186 Cross-site Scripting vulnerability in Fortinet Fortiauthenticator
A cross-site scripting (XSS) vulnerability in Fortinet FortiAuthenticator in versions 4.0.0 to before 5.3.0 "CSRF validation failure" page allows attacker to execute unauthorized script code via inject malicious scripts in HTTP referer header.
network
low complexity
fortinet CWE-79
6.1