Metrics
Affected Vendors & Products
Source | ID | Title |
---|---|---|
![]() |
EUVD-2023-48615 | A server-side request forgery vulnerability [CWE-918] in Fortinet FortiAnalyzer version 7.4.0, version 7.2.0 through 7.2.3 and before 7.0.8 and FortiManager version 7.4.0, version 7.2.0 through 7.2.3 and before 7.0.8 allows a remote attacker with low privileges to view sensitive data from internal servers or perform a local port scan via a crafted HTTP request. |
Solution
Please upgrade to FortiAnalyzer version 7.4.1 or above Please upgrade to FortiAnalyzer version 7.2.4 or above Please upgrade to FortiAnalyzer version 7.0.9 or above Please upgrade to FortiManager version 7.4.1 or above Please upgrade to FortiManager version 7.2.4 or above Please upgrade to FortiManager version 7.0.9 or above
Workaround
No workaround given by the vendor.
No history.

Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-09-12T14:30:39.261Z
Reserved: 2023-09-27T12:26:48.751Z
Link: CVE-2023-44256

Updated: 2024-08-02T19:59:51.976Z

Status : Modified
Published: 2023-10-20T10:15:12.870
Modified: 2024-11-21T08:25:31.910
Link: CVE-2023-44256

No data.

No data.