An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiADC version 7.4.1 and below, version 7.2.3 and below, version 7.1.4 and below, version 7.0.5 and below, version 6.2.6 and below may allow a read-only admin to view data pertaining to other admins.
References
Link | Resource |
---|---|
https://fortiguard.com/psirt/FG-IR-23-433 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: fortinet
Published: 2024-05-14T16:19:13.773Z
Updated: 2024-06-06T12:56:49.965Z
Reserved: 2023-12-05T13:18:34.865Z
Link: CVE-2023-50180
JSON object: View
NVD Information
Status : Analyzed
Published: 2024-05-14T17:15:27.317
Modified: 2024-05-23T15:55:49.800
Link: CVE-2023-50180
JSON object: View
Redhat Information
No data.
CWE