View Issue Details
ID | Project | Category | View Status | Date Submitted | Last Update |
---|---|---|---|---|---|
0020108 | mantisbt | security | public | 2015-09-14 03:15 | 2016-04-04 11:07 |
Reporter | dregad | Assigned To | dregad | ||
Priority | high | Severity | major | Reproducibility | always |
Status | closed | Resolution | duplicate | ||
Platform | ubuntu 14.01 | ||||
Product Version | 1.3.0-beta.1 | ||||
Target Version | 1.3.0-beta.3 | Fixed in Version | 1.3.0-beta.3 | ||
Summary | 0020108: CVE-2015-2046 : XSS in adm_config_report.php (FG-VD-15-008) | ||||
Description | This is a clone of 0019301 to track the vulnerability in 1.3.x branch | ||||
Tags | No tags attached. | ||||
MantisBT: master 3c6f6e56 2015-01-30 12:50 Details Diff |
Fix 0019301: XSS in adm_config_report.php The 'filter_config_id' was not properly sanitized before being displayed. This vulnerability was discovered by Fortinet's FortiGuard Labs. |
Affected Issues 0019301, 0020108 |
|
mod - adm_config_report.php | Diff File |