** UNSUPPORTED WHEN ASSIGNED **An improper authentication vulnerability [CWE-287] in Fortinet FortiWAN version 5.2.0 through 5.2.1 and version 5.1.1 through 5.1.2 may allow an authenticated attacker to escalate his privileges via HTTP or HTTPs requests with crafted JWT token values.
References
Link | Resource |
---|---|
https://fortiguard.com/psirt/FG-IR-23-061 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: fortinet
Published: 2023-12-13T08:52:59.178Z
Updated: 2023-12-13T08:52:59.178Z
Reserved: 2023-09-27T12:26:48.750Z
Link: CVE-2023-44252
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-12-13T09:15:34.473
Modified: 2023-12-18T17:34:39.763
Link: CVE-2023-44252
JSON object: View
Redhat Information
No data.
CWE