CVE Vulnerabilities

CVE-2023-36635

Published: Sep 07, 2023 | Modified: Nov 07, 2023
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An improper access control in Fortinet FortiSwitchManager version 7.2.0 through 7.2.2 7.0.0 through 7.0.1 may allow a remote authenticated read-only user to modify the interface settings via the API.

Affected Software

Name Vendor Start Version End Version
Fortiswitchmanager Fortinet 7.0.0 (including) 7.0.0 (including)
Fortiswitchmanager Fortinet 7.0.1 (including) 7.0.1 (including)
Fortiswitchmanager Fortinet 7.2.0 (including) 7.2.0 (including)
Fortiswitchmanager Fortinet 7.2.1 (including) 7.2.1 (including)
Fortiswitchmanager Fortinet 7.2.2 (including) 7.2.2 (including)

References