VYPR
Unrated severityNVD Advisory· Published Feb 15, 2024· Updated Aug 2, 2024

CVE-2023-45581

CVE-2023-45581

Description

An improper privilege management vulnerability [CWE-269] in Fortinet FortiClientEMS version 7.2.0 through 7.2.2 and before 7.0.10 allows an Site administrator with Super Admin privileges to perform global administrative operations affecting other sites via crafted HTTP or HTTPS requests.

Affected products

2
  • Fortinet/Forticlientemsllm-fuzzy2 versions
    <7.0.10, 7.2.0-7.2.2+ 1 more
    • (no CPE)range: <7.0.10, 7.2.0-7.2.2
    • (no CPE)range: 7.2.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.