An improper access control vulnerability [CWE-284] in FortiIsolator versions 2.3.2 and below may allow an authenticated, non privileged attacker to regenerate the CA certificate via the regeneration URL.
| Software | From | Fixed in |
|---|---|---|
| fortinet / fortiisolator | 2.3.0 | 2.3.3 |