Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-36505


An improper access control vulnerability [CWE-284] in FortiOS 7.4.0 through 7.4.3, 7.2.5 through 7.2.7, 7.0.12 through 7.0.14 and 6.4.x may allow an attacker who has already successfully obtained write access to the underlying system (via another hypothetical exploit) to bypass the file integrity checking system.


Published

2024-08-13T16:15:08.970

Last Modified

2024-08-22T14:36:31.643

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.1 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-284
  • Type: Primary
    NVD-CWE-Other

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System fortinet fortios ≤ 6.4.15 Yes
Operating System fortinet fortios < 7.0.15 Yes
Operating System fortinet fortios < 7.2.8 Yes
Operating System fortinet fortios < 7.4.4 Yes

References