VYPR
High severity7.8NVD Advisory· Published Mar 7, 2023· Updated Jun 17, 2026

CVE-2022-39953

CVE-2022-39953

Description

A improper privilege management in Fortinet FortiNAC version 9.4.0 through 9.4.1, FortiNAC version 9.2.0 through 9.2.6, FortiNAC version 9.1.0 through 9.1.8, FortiNAC all versions 8.8, FortiNAC all versions 8.7, FortiNAC all versions 8.6, FortiNAC all versions 8.5, FortiNAC version 8.3.7 allows attacker to escalation of privilege via specially crafted commands.

Affected products

6
  • Fortinet/Fortinac4 versions
    cpe:2.3:a:fortinet:fortinac:*:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:fortinet:fortinac:*:*:*:*:*:*:*:*range: >=8.5.0,<=8.5.4
    • cpe:2.3:a:fortinet:fortinac:8.3.7:*:*:*:*:*:*:*
    • cpe:2.3:a:fortinet:fortinac:9.4.0:*:*:*:*:*:*:*
    • cpe:2.3:a:fortinet:fortinac:9.4.1:*:*:*:*:*:*:*
  • Fortinet/Fortinac Fllm-fuzzy2 versions
    9.4.0-9.4.1, 9.2.0-9.2.6, 9.1.0-9.1.8, 8.8, 8.7, 8.6, 8.5, <=8.3.7+ 1 more
    • (no CPE)range: 9.4.0-9.4.1, 9.2.0-9.2.6, 9.1.0-9.1.8, 8.8, 8.7, 8.6, 8.5, <=8.3.7
    • (no CPE)range: 9.4.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.