CVE-2023-44250
10.01.2024, 18:15
An improper privilege management vulnerability [CWE-269] in a Fortinet FortiOS HA cluster version 7.4.0 through 7.4.1 and 7.2.5 and in a FortiProxy HA cluster version 7.4.0 through 7.4.1 allows an authenticated attacker to perform elevated actions via crafted HTTP or HTTPS requests.Enginsight
Vendor | Product | Version |
---|---|---|
fortinet | fortiproxy | 7.4.0 |
fortinet | fortiproxy | 7.4.1 |
fortinet | fortios | 7.2.5 |
fortinet | fortios | 7.4.0 |
fortinet | fortios | 7.4.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration