AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-9186

MEDIUM · CVSS 6.1 EPSS 0.75%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-05-31 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2018-9186
Severity
MEDIUM
CVSS
6.1
EPSS
0.75%
Fortinet

Original NVD Description

A cross-site scripting (XSS) vulnerability in Fortinet FortiAuthenticator in versions 4.0.0 to before 5.3.0 "CSRF validation failure" page allows attacker to execute unauthorized script code via inject malicious scripts in HTTP referer header.