Security Advisory

CVE-2024-27780

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-02-11 16:09:12
Last updated 2025-02-12 15:40:18
Assigner fortinet
State PUBLISHED

Description

Multiple Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) vulnerabilities [CWE-79] in FortiSIEM 7.1 all versions, 7.0 all versions, 6.7 all versions incident page may allow an authenticated attacker to perform a cross-site scripting attack via crafted HTTP requests.