An Insufficient Verification of Data Authenticity vulnerability in FortiManager 6.2.1, 6.2.0, 6.0.6 and below may allow an unauthenticated attacker to perform a Cross-Site WebSocket Hijacking (CSWSH) attack.
| Software | From | Fixed in |
|---|---|---|
| fortinet / fortimanager | 6.2.1 | 6.2.1.x |
| fortinet / fortimanager | - | 6.0.6.x |
| fortinet / fortimanager | 6.2.0 | 6.2.0.x |