CVE-2023-46712

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
10/01/2024
Last modified:
17/01/2024

Description

A improper access control in Fortinet FortiPortal version 7.0.0 through 7.0.6, Fortinet FortiPortal version 7.2.0 through 7.2.1 allows attacker to escalate its privilege via specifically crafted HTTP requests.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:fortinet:fortiportal:*:*:*:*:*:*:*:* 7.0.0 (including) 7.0.6 (including)
cpe:2.3:a:fortinet:fortiportal:*:*:*:*:*:*:*:* 7.2.0 (including) 7.2.1 (including)


References to Advisories, Solutions, and Tools