CVE-2023-50180

An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiADC version 7.4.1 and below, version 7.2.3 and below, version 7.1.4 and below, version 7.0.5 and below, version 6.2.6 and below may allow a read-only admin to view data pertaining to other admins.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.5 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
fortinetCNA
5.2 MEDIUM
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N/E:P/RL:U/RC:C
CISA-ADPADP
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 12%
VendorProductVersion
fortinetfortiadc
𝑥
≤ 6.2.6
fortinetfortiadc
7.0.0 ≤
𝑥
≤ 7.0.5
fortinetfortiadc
7.1.0 ≤
𝑥
≤ 7.1.4
fortinetfortiadc
7.2.0 ≤
𝑥
≤ 7.2.3
fortinetfortiadc
7.4.0
fortinetfortiadc
7.4.1
𝑥
= Vulnerable software versions