7.1
CVSSv3

CVE-2023-40720

Published: 14/05/2024 Updated: 23/05/2024
CVSS v3 Base Score: 7.1 | Impact Score: 4.2 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An authorization bypass through user-controlled key vulnerability [CWE-639] in FortiVoiceEntreprise version 7.0.0 up to and including 7.0.1 and prior to 6.4.8 allows an authenticated malicious user to read the SIP configuration of other users via crafted HTTP or HTTPS requests.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fortinet fortivoice 7.0.0

fortinet fortivoice

fortinet fortivoice 7.0.1