4.2
/ 10
MEDIUM
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:N/E:P/RL:O/RC:C
Description
A improper neutralization of script-related html tags in a web page (basic xss) vulnerability in Fortinet FortiADC 8.0.0, FortiADC 7.6.0 through 7.6.3, FortiADC 7.4 all versions, FortiADC 7.2 all versions may allow attacker to execute unauthorized code or commands via crafted URL.
Basic Information
ID
CVE-2025-58412
Source
fortinet
Published
Nov 19, 2025 at 09:49
Affected Product
Vendor
Fortinet
Product
FortiADC
Version
8.0.0
Affected Versions
Fortinet FortiADC 8.0.0
Fortinet FortiADC 7.6.0
Fortinet FortiADC 7.4.0
Fortinet FortiADC 7.2.0
Fortinet FortiADC 7.6.0
Fortinet FortiADC 7.4.0
Fortinet FortiADC 7.2.0