Описание
An improper access control vulnerability [CWE-284] in FortiOS 7.4.0 through 7.4.3, 7.2.5 through 7.2.7, 7.0.12 through 7.0.14 and 6.4.x may allow an attacker who has already successfully obtained write access to the underlying system (via another hypothetical exploit) to bypass the file integrity checking system.
Ссылки
- Vendor Advisory
Уязвимые конфигурации
Одно из
EPSS
5.1 Medium
CVSS3
5.5 Medium
CVSS3
Дефекты
Связанные уязвимости
An improper access control vulnerability [CWE-284] in FortiOS 7.4.0 through 7.4.3, 7.2.5 through 7.2.7, 7.0.12 through 7.0.14 and 6.4.x may allow an attacker who has already successfully obtained write access to the underlying system (via another hypothetical exploit) to bypass the file integrity checking system.
Уязвимость операционных систем FortiOS, связанная с недостатками разграничения доступа, позволяющая нарушителю оказать воздействие на целостность защищаемой информации
EPSS
5.1 Medium
CVSS3
5.5 Medium
CVSS3