Medium severity5.4NVD Advisory· Published Nov 22, 2017· Updated Jun 17, 2026
CVE-2017-7736
CVE-2017-7736
Description
A stored Cross-site Scripting (XSS) vulnerability in Fortinet FortiWeb webUI Certificate View page in 5.8.0, 5.7.1 and earlier, allows attackers to inject arbitrary web script or HTML via special crafted malicious certificate import.
Affected products
3- Fortinet, Inc./Fortinet FortiWebv5Range: FortiWeb 5.8.0, 5.7.1 and earlier
Patches
Vulnerability mechanics
References
2- www.securityfocus.com/bid/101916nvdThird Party AdvisoryVDB Entry
- fortiguard.com/advisory/FG-IR-17-131nvdIssue TrackingVendor Advisory
News mentions
0No linked articles in our index yet.