High severity8.1NVD Advisory· Published Mar 11, 2025· Updated Jun 17, 2026
CVE-2023-40723
CVE-2023-40723
Description
An exposure of sensitive information to an unauthorized actor in Fortinet FortiSIEM version 6.7.0 through 6.7.4 and 6.6.0 through 6.6.3 and 6.5.0 through 6.5.1 and 6.4.0 through 6.4.2 and 6.3.0 through 6.3.3 and 6.2.0 through 6.2.1 and 6.1.0 through 6.1.2 and 5.4.0 and 5.3.0 through 5.3.3 and 5.2.5 through 5.2.8 and 5.2.1 through 5.2.2 and 5.1.0 through 5.1.3 allows attacker to execute unauthorized code or commands via api request.
Affected products
3cpe:2.3:a:fortinet:fortisiem:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:fortinet:fortisiem:*:*:*:*:*:*:*:*range: >=5.1.0,<6.4.2
- (no CPE)range: 6.7.0 - 6.7.4, 6.6.0 - 6.6.3, 6.5.0 - 6.5.1, 6.4.0 - 6.4.2, 6.3.0 - 6.3.3, 6.2.0 - 6.2.1, 6.1.0 - 6.1.2, 5.4.0, 5.3.0 - 5.3.3, 5.2.5 - 5.2.8, 5.2.1 - 5.2.2, 5.1.0 - 5.1.3
- (no CPE)range: 6.7.0
Patches
Vulnerability mechanics
References
1- fortiguard.com/psirt/FG-IR-23-117nvdVendor Advisory
News mentions
0No linked articles in our index yet.