CVE-2024-21759
09.07.2024, 16:15
An authorization bypass through user-controlled key in Fortinet FortiPortal version 7.2.0, and versions 7.0.0 through 7.0.6 allows attacker to view unauthorized resources via HTTP or HTTPS requests.Enginsight
Vendor | Product | Version |
---|---|---|
fortinet | fortiportal | 7.0.0 ≤ 𝑥 < 7.0.7 |
fortinet | fortiportal | 7.2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration