An improper authorization in Fortinet FortiWebManager version 7.2.0 and 7.0.0 through 7.0.4 and 6.3.0 and 6.2.3 through 6.2.4 and 6.0.2 allows attacker to execute unauthorized code or commands via HTTP requests or CLI.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://fortiguard.fortinet.com/psirt/FG-IR-23-222 |
![]() ![]() ![]() |
History
Tue, 17 Dec 2024 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Fortinet
Fortinet fortiwebmanager |
|
Weaknesses | NVD-CWE-noinfo | |
CPEs | cpe:2.3:a:fortinet:fortiwebmanager:*:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortiwebmanager:6.0.2:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortiwebmanager:6.3.0:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortiwebmanager:7.2.0:*:*:*:*:*:*:* |
|
Vendors & Products |
Fortinet
Fortinet fortiwebmanager |

Status: PUBLISHED
Assigner: fortinet
Published: 2024-06-03T09:48:30.708Z
Updated: 2024-08-01T23:06:25.346Z
Reserved: 2024-01-19T08:23:28.612Z
Link: CVE-2024-23667

Updated: 2024-08-01T23:06:25.346Z

Status : Analyzed
Published: 2024-06-03T10:15:13.100
Modified: 2024-12-17T16:38:56.453
Link: CVE-2024-23667

No data.