CVE-2018-9186 is a vulnerability in Fortinet Fortiauthenticator
Published on May 31, 2018
A cross-site scripting (XSS) vulnerability in Fortinet FortiAuthenticator in versions 4.0.0 to before 5.3.0 "CSRF validation failure" page allows attacker to execute unauthorized script code via inject malicious scripts in HTTP referer header.
Products Associated with CVE-2018-9186
Want to know whenever a new CVE is published for Fortinet Fortiauthenticator? stack.watch will email you.
Affected Versions
Fortinet, Inc. FortiAuthenticator Version below 5.3.0 versions is affected by CVE-2018-9186Exploit Probability
EPSS
0.27%
Percentile
49.65%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.