NA

CVE-2023-41679

Published: 10/10/2023 Updated: 07/11/2023
CVSS v3 Base Score: 9.6 | Impact Score: 5.8 | Exploitability Score: 3.1
VMScore: 0

Vulnerability Summary

An improper access control vulnerability [CWE-284] in FortiManager management interface 7.2.0 up to and including 7.2.2, 7.0.0 up to and including 7.0.7, 6.4.0 up to and including 6.4.11, 6.2 all versions, 6.0 all versions may allow a remote and authenticated attacker with at least "device management" permission on his profile and belonging to a specific ADOM to add and delete CLI script on other ADOMs

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fortinet fortimanager 7.2.0

fortinet fortimanager 7.2.1

fortinet fortimanager

fortinet fortimanager 7.2.2