CVE-2012-0941
Multiple cross-site scripting (XSS) vulnerabilities in Fortinet FortiGate UTM WAF appliances with FortiOS 4.3.x before 4.3.6 allow remote attackers to inject arbitrary web script or HTML via vectors involving the (1) Endpoint Monitor, (2) Dialup List, or (3) Log&Report Display modules, or the fields_sorted_opt parameter to (4) user/auth/list or (5) endpointcompliance/app_detect/predefined_sig_list.
- Fortinet Fortios
- < 4.3.6
- Fix
- Available
- CVSS 3.0
- 6.1 MEDIUM
- EPSS
- 1.4% (69th percentile)
- Weakness
- CWE-79
- NVD status
- Modified
- Published
- 2018-02-08
CVE-2012-0941 at NVD
No indexed exploits for CVE-2012-0941 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2012-0941 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.