An improper access control vulnerability [CWE-284] in FortiIsolator versions 2.3.2 and below may allow an authenticated, non privileged attacker to regenerate the CA certificate via the regeneration URL.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fortiisolator | Fortinet | 2.3.0 (including) | 2.3.3 (excluding) |