VYPR
High severity7.8NVD Advisory· Published Mar 7, 2023· Updated Jun 17, 2026

CVE-2022-39953

CVE-2022-39953

Description

A improper privilege management in Fortinet FortiNAC version 9.4.0 through 9.4.1, FortiNAC version 9.2.0 through 9.2.6, FortiNAC version 9.1.0 through 9.1.8, FortiNAC all versions 8.8, FortiNAC all versions 8.7, FortiNAC all versions 8.6, FortiNAC all versions 8.5, FortiNAC version 8.3.7 allows attacker to escalation of privilege via specially crafted commands.

Affected products

6
  • Fortinet/Fortinac Fcpe-rescue2 versions
    9.4.0+ 1 more
    • (no CPE)range: 9.4.0
    • (no CPE)range: 9.4.0-9.4.1, 9.2.0-9.2.6, 9.1.0-9.1.8, 8.8, 8.7, 8.6, 8.5, <=8.3.7
  • Fortinet/Fortinac4 versions
    cpe:2.3:a:fortinet:fortinac:*:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:fortinet:fortinac:*:*:*:*:*:*:*:*range: >=8.5.0,<=8.5.4
    • cpe:2.3:a:fortinet:fortinac:8.3.7:*:*:*:*:*:*:*
    • cpe:2.3:a:fortinet:fortinac:9.4.0:*:*:*:*:*:*:*
    • cpe:2.3:a:fortinet:fortinac:9.4.1:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.