An improper authorization vulnerability [CWE-285] in Fortinet FortiADC version 7.4.0 and prior to 7.2.2 may allow a low privileged user to read or backup the full system configuration via HTTP or HTTPS requests.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
fortinet fortiadc |
||
fortinet fortiadc 7.1.0 |
||
fortinet fortiadc 7.2.0 |
||
fortinet fortiadc 7.1.1 |
||
fortinet fortiadc 7.1.2 |
||
fortinet fortiadc 7.4.0 |