Home
MEDIUM: 6.0 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L/E:P/RL:U/RC:CDefault status
unaffected
1.4.0 (semver)
affected
1.3.0
affected
1.2.0
affected
1.1.0 (semver)
affected
1.0.0 (semver)
affected
Default status
unaffected
1.4.0 (semver)
affected
Description
A improper handling of insufficient permissions or privileges in Fortinet FortiPAM 1.4.0 through 1.4.1, 1.3.0, 1.2.0, 1.1.0 through 1.1.2, 1.0.0 through 1.0.3, FortiSRA 1.4.0 through 1.4.1 allows attacker to improper access control via specially crafted HTTP requests
Problem types
Product status
1.4.0 (semver)
1.3.0
1.2.0
1.1.0 (semver)
1.0.0 (semver)
1.4.0 (semver)
References
fortiguard.fortinet.com/psirt/FG-IR-25-008