Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wrc2-47qv-9p22

Опубликовано: 08 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 3.3

Описание

An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiManager 7.4.2 and below, 7.2.5 and below, 7.0.12 and below allows a remote authenticated attacker assigned to an Administrative Domain (ADOM) to access device summary of unauthorized ADOMs via crafted HTTP requests.

An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiManager 7.4.2 and below, 7.2.5 and below, 7.0.12 and below allows a remote authenticated attacker assigned to an Administrative Domain (ADOM) to access device summary of unauthorized ADOMs via crafted HTTP requests.

EPSS

Процентиль: 45%
0.00224
Низкий

3.3 Low

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 3.3
nvd
больше 1 года назад

An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiManager 7.4.2 and below, 7.2.5 and below, 7.0.12 and below allows a remote authenticated attacker assigned to an Administrative Domain (ADOM) to access device summary of unauthorized ADOMs via crafted HTTP requests.

CVSS3: 3.3
fstec
больше 1 года назад

Уязвимость программного средства для централизованного управления устройствами Fortinet FortiManager, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 45%
0.00224
Низкий

3.3 Low

CVSS3

Дефекты

CWE-200