An improper access control vulnerability [CWE-284] in Fortinet FortiADC version 7.4.0 through 7.4.1 and before 7.2.4 allows a read only authenticated attacker to perform some write actions via crafted HTTP or HTTPS requests.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://fortiguard.fortinet.com/psirt/FG-IR-23-469 |
History
Mon, 09 Sep 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Fortinet
Fortinet fortiadc |
|
Weaknesses | NVD-CWE-noinfo | |
CPEs | cpe:2.3:a:fortinet:fortiadc:*:*:*:*:*:*:*:* | |
Vendors & Products |
Fortinet
Fortinet fortiadc |
MITRE
Status: PUBLISHED
Assigner: fortinet
Published: 2024-07-09T15:33:31.910Z
Updated: 2024-08-02T22:09:49.954Z
Reserved: 2023-12-05T13:18:34.865Z
Link: CVE-2023-50181
Vulnrichment
Updated: 2024-08-02T22:09:49.954Z
NVD
Status : Modified
Published: 2024-07-09T16:15:03.853
Modified: 2024-11-21T08:36:36.983
Link: CVE-2023-50181
Redhat
No data.