CVE-2024-23667

An improper authorization in Fortinet FortiWebManager version 7.2.0 and 7.0.0 through 7.0.4 and 6.3.0 and 6.2.3 through 6.2.4 and 6.0.2 allows attacker to execute unauthorized code or commands via HTTP requests or CLI.
Configurations

No configuration.

History

21 Nov 2024, 08:58

Type Values Removed Values Added
References () https://fortiguard.fortinet.com/psirt/FG-IR-23-222 - () https://fortiguard.fortinet.com/psirt/FG-IR-23-222 -
Summary
  • (es) Una autorización inadecuada en Fortinet FortiWebManager versión 7.2.0 y 7.0.0 hasta 7.0.4 y 6.3.0 y 6.2.3 hasta 6.2.4 y 6.0.2 permite al atacante ejecutar código o comandos no autorizados a través de solicitudes HTTP o CLI.

03 Jun 2024, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-03 10:15

Updated : 2024-11-21 08:58


NVD link : CVE-2024-23667

Mitre link : CVE-2024-23667

CVE.ORG link : CVE-2024-23667


JSON object : View

Products Affected

No product.

CWE
CWE-285

Improper Authorization