Multiple improper authorization vulnerabilities [CWE-285] in FortiWeb version 7.4.2 and below, version 7.2.7 and below, version 7.0.10 and below, version 6.4.3 and below, version 6.3.23 and below may allow an authenticated attacker to perform unauthorized ADOM operations via crafted requests.
References
Link | Resource |
---|---|
https://fortiguard.fortinet.com/psirt/FG-IR-23-474 |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: fortinet
Published: 2024-06-03T09:50:33.614Z
Updated: 2024-06-04T17:46:07.306Z
Reserved: 2024-01-19T08:23:28.612Z
Link: CVE-2024-23665
JSON object: View
NVD Information
Status : Awaiting Analysis
Published: 2024-06-03T10:15:12.870
Modified: 2024-06-03T14:46:24.250
Link: CVE-2024-23665
JSON object: View
Redhat Information
No data.
CWE