CVE-2023-45581
15.02.2024, 14:15
An improper privilege management vulnerability [CWE-269] in Fortinet FortiClientEMS version 7.2.0 through 7.2.2 and before 7.0.10 allows anSite administrator with Super Admin privileges to perform global administrative operations affecting other sites via crafted HTTP or HTTPS requests.Enginsight
| Vendor | Product | Version |
|---|---|---|
| fortinet | forticlient_enterprise_management_server | 𝑥 < 7.0.10 |
| fortinet | forticlient_enterprise_management_server | 7.2.0 ≤ 𝑥 ≤ 7.2.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration