A improper access control in Fortinet FortiPortal version 7.0.0 through 7.0.6, Fortinet FortiPortal version 7.2.0 through 7.2.1 allows attacker to escalate its privilege via specifically crafted HTTP requests.
| Software | From | Fixed in |
|---|---|---|
| fortinet / fortiportal | 7.0.0 | 7.0.6.x |
| fortinet / fortiportal | 7.2.0 | 7.2.1.x |