VYPR
Low severity3.5NVD Advisory· Published Apr 11, 2023· Updated Jun 17, 2026

CVE-2022-43952

CVE-2022-43952

Description

An improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiADC version 7.1.1 and below, version 7.0.3 and below, version 6.2.5 and below may allow an authenticated attacker to perform a cross-site scripting attack via crafted HTTP requests.

Affected products

3
  • cpe:2.3:a:fortinet:fortiadc:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:fortinet:fortiadc:*:*:*:*:*:*:*:*range: >=6.2.0,<6.2.6
    • (no CPE)range: 7.1.0
  • Range: <=7.1.1, <=7.0.3, <=6.2.5

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.