Total vulnerabilities in the database
An improper privilege management vulnerability [CWE-269] in a Fortinet FortiOS HA cluster version 7.4.0 through 7.4.1 and 7.2.5 and in a FortiProxy HA cluster version 7.4.0 through 7.4.1 allows an authenticated attacker to perform elevated actions via crafted HTTP or HTTPS requests.
Software | From | Fixed in |
---|---|---|
fortinet / fortios | 7.4.0 | 7.4.0.x |
fortinet / fortios | 7.2.5 | 7.2.5.x |
fortinet / fortiproxy | 7.4.0 | 7.4.0.x |
fortinet / fortiproxy | 7.4.1 | 7.4.1.x |
fortinet / fortios | 7.4.1 | 7.4.1.x |