VYPR
High severity8.1NVD Advisory· Published Mar 12, 2024· Updated Jun 17, 2026

CVE-2023-36554

CVE-2023-36554

Description

A improper access control in Fortinet FortiManager version 7.4.0, version 7.2.0 through 7.2.3, version 7.0.0 through 7.0.10, version 6.4.0 through 6.4.13, 6.2 all versions allows attacker to execute unauthorized code or commands via specially crafted HTTP requests.

Affected products

4
  • cpe:2.3:a:fortinet:fortimanager:*:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:fortinet:fortimanager:*:*:*:*:*:*:*:*range: >=6.2.0,<=6.2.12
    • cpe:2.3:a:fortinet:fortimanager:7.4.0:*:*:*:*:*:*:*
    • (no CPE)range: 7.4.0, 7.2.0-7.2.3, 7.0.0-7.0.10, 6.4.0-6.4.13, 6.2
    • (no CPE)range: 7.4.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.