Fortinet FortiSOAR
cpe:2.3:a:fortinet:fortisoar:*:*:*:*:*:*:*
- >= 7.3.0, <= 7.3.3
- >= 7.2.1, <= 7.2.2
A stored cross-site scripting vulnerability has been identified in Fortinet FortiSOAR versions 7.3.0 to 7.3.3 and 7.2.1 to 7.2.2. This vulnerability arises from improper input neutralization during web page generation, potentially allowing an authenticated attacker to inject malicious scripts through the creation of harmful playbooks.
Exploitation of this vulnerability allows for stored cross-site scripting, where injected scripts are executed in the context of the user.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.