Lack of root file system integrity checking in Fortinet FortiManager VM application images of 6.2.0, 6.0.6 and below may allow an attacker to implant third-party programs by recreating the image through specific methods.
The product does not sufficiently verify the origin or authenticity of data, in a way that causes it to accept invalid data.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fortimanager | Fortinet | * | 6.0.6 (including) |
Fortimanager | Fortinet | 6.2.0 (including) | 6.2.0 (including) |