Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-22575

Опубликовано: 08 сент. 2026
Источник: nvd
CVSS3: 4.9
EPSS Низкий

Описание

An improper access control vulnerability in Fortinet FortiManager 7.6.0 through 7.6.4, FortiManager 7.4.0 through 7.4.10, FortiManager 7.2 all versions, FortiManager Cloud 7.6.2 through 7.6.4, FortiManager Cloud 7.4.1 through 7.4.10, FortiManager Cloud 7.2 all versions may allow an administrator to bypass the approval process for workflow sessions via crafted HTTP or HTTPs requests.

EPSS

Процентиль: 16%
0.00245
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 4.9
github
12 дней назад

An improper access control vulnerability in Fortinet FortiManager 7.6.0 through 7.6.4, FortiManager 7.4.0 through 7.4.10, FortiManager 7.2 all versions, FortiManager Cloud 7.6.2 through 7.6.4, FortiManager Cloud 7.4.1 through 7.4.10, FortiManager Cloud 7.2 all versions may allow an administrator to bypass the approval process for workflow sessions via crafted HTTP or HTTPs requests.

EPSS

Процентиль: 16%
0.00245
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-284