AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2022-43955

HIGH · CVSS 8.8 EPSS 0.64%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-04-11 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2022-43955
Severity
HIGH
CVSS
8.8
EPSS
0.64%

Original NVD Description

An improper neutralization of input during web page generation [CWE-79] in the FortiWeb web interface 7.0.0 through 7.0.3, 6.3.0 through 6.3.21, 6.4 all versions, 6.2 all versions, 6.1 all versions and 6.0 all versions may allow an unauthenticated and remote attacker to perform a reflected cross site scripting attack (XSS) via injecting malicious payload in log entries used to build report.