Description
An improper access control vulnerability [CWE-284] in FortiOS versions 6.2.0 through 6.2.11, 6.4.0 through 6.4.8 and 7.0.0 through 7.0.5 may allow an authenticated attacker with a restricted user profile to gather the checksum information about the other VDOMs via CLI commands.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-28517 | An improper access control vulnerability [CWE-284] in FortiOS versions 6.2.0 through 6.2.11, 6.4.0 through 6.4.8 and 7.0.0 through 7.0.5 may allow an authenticated attacker with a restricted user profile to gather the checksum information about the other VDOMs via CLI commands. |
References
| Link | Providers |
|---|---|
| https://fortiguard.com/psirt/FG-IR-22-036 |
|
History
Tue, 22 Oct 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-10-22T20:55:03.742Z
Reserved: 2022-01-19T00:00:00.000Z
Link: CVE-2022-23442
Updated: 2024-08-03T03:43:45.912Z
Status : Modified
Published: 2022-08-03T14:15:08.473
Modified: 2024-11-21T06:48:33.953
Link: CVE-2022-23442
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD