Description
A Use Of Less Trusted Source [CWE-348] vulnerability in Fortinet FortiPortal version 7.0.0 through 7.0.6 and version 7.2.0 through 7.2.1 allows an unauthenticated attack to bypass IP protection through crafted HTTP or HTTPS packets.
No analysis available yet.
Remediation
Vendor Solution
Please upgrade to FortiPortal version 7.2.2 or above Please upgrade to FortiPortal version 7.0.7 or above
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-20630 | A Use Of Less Trusted Source [CWE-348] vulnerability in Fortinet FortiPortal version 7.0.0 through 7.0.6 and version 7.2.0 through 7.2.1 allows an unauthenticated attack to bypass IP protection through crafted HTTP or HTTPS packets. |
References
| Link | Providers |
|---|---|
| https://fortiguard.com/psirt/FG-IR-24-021 |
|
History
No history.
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-08-01T22:51:11.244Z
Reserved: 2024-01-11T16:29:07.978Z
Link: CVE-2024-23105
Updated: 2024-08-01T22:51:11.244Z
Status : Modified
Published: 2024-05-14T17:15:38.967
Modified: 2024-11-21T08:56:56.483
Link: CVE-2024-23105
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD