CVE Vulnerabilities

CVE-2023-50181

Published: Jul 09, 2024 | Modified: Sep 09, 2024
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

An improper access control vulnerability [CWE-284] in Fortinet FortiADC version 7.4.0 through 7.4.1 and before 7.2.4 allows a read only authenticated attacker to perform some write actions via crafted HTTP or HTTPS requests.

Affected Software

Name Vendor Start Version End Version
Fortiadc Fortinet 6.0.0 (including) 7.2.5 (excluding)
Fortiadc Fortinet 7.4.0 (including) 7.4.2 (excluding)

References