A improper privilege management in Fortinet FortiManager version 7.4.0 through 7.4.3, 7.2.0 through 7.2.5, 7.0.0 through 7.0.12, 6.4.0 through 6.4.14, FortiAnalyzer version 7.4.0 through 7.4.2, 7.2.0 through 7.2.5, 7.0.0 through 7.0.12, 6.4.0 through 6.4.14 allows attacker to escalation of privilege via specific shell commands
2025-01-14T14:15:29.517
2025-01-31T17:36:27.323
Analyzed
CVSSv3.1: 6.7 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | fortinet | fortianalyzer | < 7.2.6 | Yes |
Application | fortinet | fortianalyzer | < 7.4.4 | Yes |
Application | fortinet | fortianalyzer_cloud | < 7.2.7 | Yes |
Application | fortinet | fortianalyzer_cloud | < 7.4.3 | Yes |
Application | fortinet | fortimanager | < 7.2.6 | Yes |
Application | fortinet | fortimanager | < 7.4.4 | Yes |
Application | fortinet | fortimanager_cloud | < 7.2.7 | Yes |
Application | fortinet | fortimanager_cloud | < 7.4.4 | Yes |