Low severity3.3NVD Advisory· Published Oct 8, 2024· Updated Jun 17, 2026
CVE-2024-33506
CVE-2024-33506
Description
An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiManager 7.4.2 and below, 7.2.5 and below, 7.0.12 and below allows a remote authenticated attacker assigned to an Administrative Domain (ADOM) to access device summary of unauthorized ADOMs via crafted HTTP requests.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:fortinet:fortimanager:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:fortinet:fortimanager:*:*:*:*:*:*:*:*range: >=7.0.0,<7.2.6
- cpe:2.3:o:fortinet:fortimanager:7.4.2:*:*:*:*:*:*:*range: 7.4.0
- (no CPE)range: <=7.4.2, <=7.2.5, <=7.0.12
Patches
Vulnerability mechanics
References
1- fortiguard.fortinet.com/psirt/FG-IR-23-472nvdVendor Advisory
News mentions
0No linked articles in our index yet.