CVE
- Id
- 99945
- CVE No.
- CVE-2017-3125
- Status
- Candidate
- Description
- An unauthenticated XSS vulnerability with FortiMail 5.0.0 - 5.2.9 and 5.3.0 - 5.3.8 could allow an attacker to execute arbitrary scripts in the security context of the browser of a victim logged in FortiMail, assuming the victim is social engineered into clicking an URL crafted by the attacker.
- Phase
- Assigned (20161202)
- Votes
- None (candidate not yet proposed)
- Comments