Fortinet Fortigate ][Web filtering] Host header is vulnerable to an XSS vulnerability and redirection/injection (FG-IR-19-301)

medium Nessus Plugin ID 209756

Version 1.3

Jul 24, 2025, 10:01 AM

  • CVSS metrics ("CVSSv2 score" set to 6.4)
  • CVSS metrics ("CVSSv2 vector" set to "CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:N")
  • CVSS metrics ("CVSSv3 score" set to 6.1)
  • CVSS metrics ("CVSSv3 vector" set to "CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N")

Plugin Feed: 202507241001

Version 1.2

Oct 28, 2024, 10:30 PM

  • CVSS metrics ("Cvssv4 score" set to 0.0)
  • CVSSv2 severity (based on None, severity decreased from "High" to "Low")
  • Plugin metadata

Plugin Feed: 202410282230

Version 1.1

Oct 27, 2024, 6:12 AM

  • New

Plugin Feed: 202410270612

* Changelogs are generally available for changes made after Nov 1, 2022