cve/2017/CVE-2017-7735.md

18 lines
748 B
Markdown
Raw Normal View History

2024-05-26 14:27:05 +02:00
### [CVE-2017-7735](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-7735)
![](https://img.shields.io/static/v1?label=Product&message=Fortinet%20FortiOS&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Execute%20unauthorized%20code%20or%20commands&color=brighgreen)
### Description
A Cross-Site Scripting vulnerability in Fortinet FortiOS versions 5.2.0 through 5.2.11 and 5.4.0 through 5.4.4 allows attackers to execute unauthorized code or commands via the "Groups" input while creating or editing User Groups.
### POC
#### Reference
- https://fortiguard.com/advisory/FG-IR-17-127
#### Github
No PoCs found on GitHub currently.