Metrics
Affected Vendors & Products
Source | ID | Title |
---|---|---|
![]() |
EUVD-2024-21143 | An improper authorization in Fortinet FortiWebManager version 7.2.0 and 7.0.0 through 7.0.4 and 6.3.0 and 6.2.3 through 6.2.4 and 6.0.2 allows attacker to execute unauthorized code or commands via HTTP requests or CLI. |
Solution
Please upgrade to FortiWebManager version 7.4.0 or above Please upgrade to FortiWebManager version 7.2.1 or above Please upgrade to FortiWebManager version 7.0.5 or above Please upgrade to FortiWebManager version 6.3.1 or above Please upgrade to FortiWebManager version 6.2.5 or above
Workaround
No workaround given by the vendor.
Link | Providers |
---|---|
https://fortiguard.fortinet.com/psirt/FG-IR-23-222 |
![]() ![]() ![]() |
Sat, 12 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Tue, 17 Dec 2024 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Fortinet
Fortinet fortiwebmanager |
|
Weaknesses | NVD-CWE-noinfo | |
CPEs | cpe:2.3:a:fortinet:fortiwebmanager:*:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortiwebmanager:6.0.2:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortiwebmanager:6.3.0:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortiwebmanager:7.2.0:*:*:*:*:*:*:* |
|
Vendors & Products |
Fortinet
Fortinet fortiwebmanager |

Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-08-01T23:06:25.445Z
Reserved: 2024-01-19T08:23:28.613Z
Link: CVE-2024-23670

Updated: 2024-08-01T23:06:25.445Z

Status : Analyzed
Published: 2024-06-03T10:15:13.523
Modified: 2024-12-17T16:35:25.233
Link: CVE-2024-23670

No data.

No data.