Multiple insufficient session expiration vulnerabilities [CWE-613] in FortiAIOps version 2.0.0 may allow an attacker to re-use stolen old session tokens to perform unauthorized operations via crafted requests.
History

Fri, 16 Aug 2024 15:15:00 +0000

Type Values Removed Values Added
First Time appeared Fortinet
Fortinet fortiaiops
CPEs cpe:2.3:a:fortinet:fortiaiops:2.0.0:*:*:*:*:*:*:*
Vendors & Products Fortinet
Fortinet fortiaiops

cve-icon MITRE

Status: PUBLISHED

Assigner: fortinet

Published: 2024-07-09T15:33:30.678Z

Updated: 2024-08-02T00:41:54.447Z

Reserved: 2024-02-26T14:46:31.335Z

Link: CVE-2024-27782

cve-icon Vulnrichment

Updated: 2024-08-02T00:41:54.447Z

cve-icon NVD

Status : Analyzed

Published: 2024-07-09T16:15:05.017

Modified: 2024-08-16T14:45:37.017

Link: CVE-2024-27782

cve-icon Redhat

No data.