Low severity3.5NVD Advisory· Published Apr 11, 2023· Updated Jun 17, 2026
CVE-2022-43952
CVE-2022-43952
Description
An improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability [CWE-79] in FortiADC version 7.1.1 and below, version 7.0.3 and below, version 6.2.5 and below may allow an authenticated attacker to perform a cross-site scripting attack via crafted HTTP requests.
Affected products
3cpe:2.3:a:fortinet:fortiadc:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:fortinet:fortiadc:*:*:*:*:*:*:*:*range: >=6.2.0,<6.2.6
- (no CPE)range: 7.1.0
- Range: <=7.1.1, <=7.0.3, <=6.2.5
Patches
Vulnerability mechanics
References
1- fortiguard.com/psirt/FG-IR-22-439nvdVendor Advisory
News mentions
0No linked articles in our index yet.