An improper access control in Fortinet FortiSwitchManager version 7.2.0 through 7.2.2 7.0.0 through 7.0.1 may allow a remote authenticated read-only user to modify the interface settings via the API.
2023-09-07T13:15:08.433
2024-11-21T08:10:08.487
Modified
CVSSv3.1: 7.1 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | fortinet | fortiswitchmanager | 7.0.0 | Yes |
Application | fortinet | fortiswitchmanager | 7.0.1 | Yes |
Application | fortinet | fortiswitchmanager | 7.2.0 | Yes |
Application | fortinet | fortiswitchmanager | 7.2.1 | Yes |
Application | fortinet | fortiswitchmanager | 7.2.2 | Yes |