CVE-2017-7735: Fortinet FortiOS
Medium severity, CVSS 5.4. EPSS: 0.8% chance of exploitation in the next 30 days.
A Cross-Site Scripting vulnerability in Fortinet FortiOS versions 5.2.0 through 5.2.11 and 5.4.0 through 5.4.4 allows attackers to execute unauthorized code or commands via the "Groups" input while creating or editing User Groups.
Affected products
- Fortinet FortiOS: version 5.2.0 only; version 5.2.1 only; version 5.2.2 only; version 5.2.3 only; version 5.2.4 only; version 5.2.5 only; …
Published 2017-09-12. Last modified 2026-06-17.