FortiManager (Series) – (Bookmark) Persistent Vulnerability

Posted by Vulnerability Lab on Aug 04

Document Title:
===============
FortiManager (Series) – (Bookmark) Persistent Vulnerability

References (Source):
====================
http://www.vulnerability-lab.com/get_content.php?id=1685

Fortinet PSIRT ID: 1624461

Release Notes 1: http://docs.fortinet.com/uploaded/files/2499/fortios-5.0.12-release-notes.pdf
Release Notes 2: http://docs.fortinet.com/uploaded/files/2861/fortios-v5.2.6-release-notes.pdf
Release Notes 3:…

FortiAnalyzer & FortiManager – Client Side Cross Site Scripting Web Vulnerability

Posted by Vulnerability Lab on Aug 04

Document Title:
===============
FortiAnalyzer & FortiManager – Client Side Cross Site Scripting Web Vulnerability

References (Source):
====================
http://www.vulnerability-lab.com/get_content.php?id=1686

Fortinet PSIRT ID: 1624489

Release Notes 1: http://docs.fortinet.com/uploaded/files/2861/fortios-v5.2.6-release-notes.pdf
Release Notes 2: http://docs.fortinet.com/uploaded/files/3075/fortios-v5.4.1-release-notes.pdf
Release Notes…

4 Flaws hit HTTP/2 Protocol that could allow Hackers to Disrupt Servers

If you think that the HTTP/2 protocol is more secure than the standard HTTP (Hypertext Transfer Protocol), then you might be wrong, as it took researchers just four months to discover four flaws in the HTTP/2 protocol.

HTTP/2 was launched properly just in May last year after Google bundled its SPDY project into HTTP/2 in February in an effort to speed up the loading of web pages as well as