An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiADC version 7.4.1 and below, version 7.2.3 and below, version 7.1.4 and below, version 7.0.5 and below, version 6.2.6 and below may allow a read-only admin to view data pertaining to other admins.
2024-05-14T17:15:27.317
2024-11-21T08:36:36.837
Modified
CVSSv3.1: 5.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | fortinet | fortiadc | ≤ 6.2.6 | Yes |
Application | fortinet | fortiadc | ≤ 7.0.5 | Yes |
Application | fortinet | fortiadc | ≤ 7.1.4 | Yes |
Application | fortinet | fortiadc | ≤ 7.2.3 | Yes |
Application | fortinet | fortiadc | 7.4.0 | Yes |
Application | fortinet | fortiadc | 7.4.1 | Yes |