CVE-2015-8037
Fortinet FortiManager <5.2.4 - XSS
Title source: llmDescription
Multiple cross-site scripting (XSS) vulnerabilities in the Graphical User Interface (GUI) in Fortinet FortiManager before 5.2.4 allow remote attackers to inject arbitrary web script or HTML via the (1) SOMVpnSSLPortalDialog or (2) FGDMngUpdHistory.
Exploits (1)
Scores
EPSS
0.0167
EPSS Percentile
82.2%
Details
CWE
CWE-79
Status
published
Products (1)
fortinet/fortimanager_firmware
< 5.2.3
Published
Nov 02, 2015
Tracked Since
Feb 18, 2026