Aller au contenu

Fiche vulnérabilité

CVE-2024-45331 : faille élevée fortinet fortianalyzer (CVSS 7.8)

Description

A incorrect privilege assignment vulnerability in Fortinet FortiAnalyzer 7.4.0 through 7.4.3, FortiAnalyzer 7.2.0 through 7.2.5, FortiAnalyzer 7.0 all versions, FortiAnalyzer 6.4 all versions, FortiAnalyzer Cloud 7.4.1 through 7.4.2, FortiAnalyzer Cloud 7.2.1 through 7.2.6, FortiAnalyzer Cloud 7.0 all versions, FortiAnalyzer Cloud 6.4 all versions, FortiManager 7.4.0 through 7.4.3, FortiManager 7.2.0 through 7.2.5, FortiManager 7.0 all versions, FortiManager 6.4 all versions allows attacker to escalate privilege via specific shell commands

En bref

Sévérité
Élevée (CVSS 7.8)
Vecteur CVSS
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
16 janv. 2025
Dernière mise à jour
8 juil. 2026

Produits concernés

  • fortinet fortianalyzer
  • fortinet fortianalyzer cloud
  • fortinet fortimanager
  • fortinet fortimanager cloud

Références

Rechercher une autre vulnérabilité dans la base CVE