{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[{"description":"FortiMail versions 5.3.0 \u00e0 5.3.9","product":{"name":"FortiMail","vendor":{"name":"Fortinet","scada":false}}},{"description":"FortiMail versions 5.2.0 \u00e0 5.2.9","product":{"name":"FortiMail","vendor":{"name":"Fortinet","scada":false}}},{"description":"FortiWLC versions 8.0 \u00e0 8.2","product":{"name":"FortiMail","vendor":{"name":"Fortinet","scada":false}}},{"description":"FortiWLC versions 7.0-7 \u00e0 7.0-10","product":{"name":"FortiMail","vendor":{"name":"Fortinet","scada":false}}},{"description":"FortiMail versions 5.1 et ant\u00e9rieures","product":{"name":"FortiMail","vendor":{"name":"Fortinet","scada":false}}},{"description":"FortiWLC versions 8.3.0 \u00e0 8.3.2","product":{"name":"FortiMail","vendor":{"name":"Fortinet","scada":false}}},{"description":"FortiWLC versions 6.1-2 \u00e0 6.1-5","product":{"name":"FortiMail","vendor":{"name":"Fortinet","scada":false}}}],"affected_systems_content":null,"content":"## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l'\u00e9diteur pour l'obtention des\ncorrectifs (cf. section Documentation).\n\n## Contournement provisoire\n","cves":[{"name":"CVE-2017-7341","url":"https://www.cve.org/CVERecord?id=CVE-2017-7341"},{"name":"CVE-2017-7335","url":"https://www.cve.org/CVERecord?id=CVE-2017-7335"},{"name":"CVE-2017-7732","url":"https://www.cve.org/CVERecord?id=CVE-2017-7732"}],"links":[],"reference":"CERTFR-2017-AVI-352","revisions":[{"description":"Version initiale","revision_date":"2017-10-16T00:00:00.000000"}],"risks":[{"description":"Injection de code indirecte \u00e0 distance (XSS)"},{"description":"Ex\u00e9cution de code arbitraire"}],"summary":"De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 d\u00e9couvertes dans Fortinet FortiWLC\net FortiMail. Elles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution\nde code arbitraire et une injection de code indirecte \u00e0 distance (XSS).\n","title":"Multiples vuln\u00e9rabilit\u00e9s dans Fortinet FortiWLC et FortiMail","vendor_advisories":[{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 Fortinet FG-IR-17-099 du 13 octobre 2017","url":"http://fortiguard.com/psirt/FG-IR-17-099"},{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 Fortinet FG-IR-17-119 du 13 octobre 2017","url":"http://fortiguard.com/psirt/FG-IR-17-119"},{"published_at":null,"title":"Bulletin de s\u00e9curit\u00e9 Fortinet FG-IR-17-106 du 13 octobre 2017","url":"http://fortiguard.com/psirt/FG-IR-17-106"}]}
