An improper authorization in Fortinet FortiWebManager version 7.2.0 and 7.0.0 through 7.0.4 and 6.3.0 and 6.2.3 through 6.2.4 and 6.0.2 allows attacker to execute unauthorized code or commands via HTTP requests or CLI.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://fortiguard.fortinet.com/psirt/FG-IR-23-222 |
History
Tue, 17 Dec 2024 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Fortinet
Fortinet fortiwebmanager |
|
Weaknesses | NVD-CWE-noinfo | |
CPEs | cpe:2.3:a:fortinet:fortiwebmanager:*:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortiwebmanager:6.0.2:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortiwebmanager:6.3.0:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortiwebmanager:7.2.0:*:*:*:*:*:*:* |
|
Vendors & Products |
Fortinet
Fortinet fortiwebmanager |
MITRE
Status: PUBLISHED
Assigner: fortinet
Published: 2024-06-03T09:48:24.625Z
Updated: 2024-08-01T23:06:25.289Z
Reserved: 2024-01-19T08:23:28.613Z
Link: CVE-2024-23668
Vulnrichment
Updated: 2024-08-01T23:06:25.289Z
NVD
Status : Analyzed
Published: 2024-06-03T10:15:13.320
Modified: 2024-12-17T16:38:42.387
Link: CVE-2024-23668
Redhat
No data.