CVE-2018-1351: Fortinet FortiManager

Medium severity, CVSS 4.8. EPSS: 1.2% chance of exploitation in the next 30 days.

A Cross-site Scripting (XSS) vulnerability in Fortinet FortiManager 6.0.0, 5.6.6 and below versions allows attacker to execute HTML/javascript code via managed remote devices CLI commands by viewing the remote device CLI config installation log.

Affected products

  • Fortinet FortiManager: up to and including 6.0.0

Published 2018-06-28. Last modified 2026-06-17.