CVE-2023-26205
14.11.2023, 18:15
An improper access control vulnerability[CWE-284] in FortiADC automation feature 7.1.0 through 7.1.2, 7.0 all versions, 6.2 all versions, 6.1 all versions may allow an authenticatedlow-privileged attacker to escalate their privileges to super_admin via a specific crafted configuration of fabric automation CLI script.Enginsight
Vendor | Product | Version |
---|---|---|
fortinet | fortiadc | 6.1.0 ≤ 𝑥 ≤ 6.1.6 |
fortinet | fortiadc | 6.2.0 ≤ 𝑥 ≤ 6.2.6 |
fortinet | fortiadc | 7.0.0 ≤ 𝑥 ≤ 7.0.5 |
fortinet | fortiadc | 7.1.0 |
fortinet | fortiadc | 7.1.1 |
fortinet | fortiadc | 7.1.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration