CVE-2018-13380 Scanner

Detects 'Cross-Site Scripting (XSS)' vulnerability in Fortinet FortiOS and FortiProxy affects v. FortiGate 6.0.0 through 6.0.4, 5.6.0 through 5.6.7, 5.4.0 through 5.4.12, 5.2 and earlier and FortiProxy versions 2.0.0, 1.2.8 and earlier.


Fortinet FortiOS and FortiProxy are products designed for network security and access control. FortiOS is a next-generation firewall with unified threat management capabilities, while FortiProxy is a web application firewall used for secure web access and improving web application performance. Both products are widely used by organizations as they offer advanced security features and help protect their digital assets.

One vulnerability detected in Fortinet FortiOS and FortiProxy is the CVE-2018-13380 vulnerability. This vulnerability is a Cross-site Scripting (XSS) vulnerability that allows an attacker to execute unauthorized malicious code via error or message handling parameters. Attackers can use this vulnerability to access sensitive information such as login credentials, private user data and execute unauthorized actions.

Exploiting this vulnerability can lead to serious security breaches, which may result in loss of data, sensitive information, and intellectual property. Moreover, attackers can use the stolen data, for example, to perform identity theft, financial fraud, or blackmail. It is therefore essential for organizations to take appropriate precautions to mitigate the risk of a potential breach.

