CVE-2023-36637

CVSS V2 None CVSS V3 None
Description
An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiMail version 7.2.0 through 7.2.2 and before 7.0.5 allows an authenticated attacker to inject HTML tags in FortiMail's calendar via input fields.
Overview
  • CVE ID
  • CVE-2023-36637
  • Assigner
  • fortinet
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-10-10T16:50:16.269Z
  • Last Modified Date
  • 2023-10-10T16:50:16.269Z
References
Reference URL Reference Tags
https://fortiguard.com/psirt/FG-IR-23-194
History
Created Old Value New Value Data Type Notes
2024-06-25 16:25:48 Added to TrackCVE