A weak authentication in Fortinet FortiManager Cloud, FortiAnalyzer versions 7.6.0 through 7.6.1, 7.4.1 through 7.4.3, FortiAnalyzer Cloud versions 7.4.1 through 7.4.3, FortiManager versions 7.6.0 through 7.6.1, 7.4.1 through 7.4.3, FortiManager Cloud versions 7.4.1 through 7.4.3 allows attacker to execute unauthorized code or commands via a brute-force attack.
References
Link | Resource |
---|---|
https://fortiguard.fortinet.com/psirt/FG-IR-24-221 | Mitigation Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
03 Feb 2025, 21:54
Type | Values Removed | Values Added |
---|---|---|
References | () https://fortiguard.fortinet.com/psirt/FG-IR-24-221 - Mitigation, Vendor Advisory | |
First Time |
Fortinet fortimanager Cloud
Fortinet fortimanager Fortinet fortiproxy Fortinet fortianalyzer Cloud Fortinet fortianalyzer Fortinet Fortinet fortios |
|
CWE | NVD-CWE-Other | |
CPE | cpe:2.3:a:fortinet:fortimanager_cloud:*:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortimanager:*:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortiproxy:*:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortianalyzer_cloud:*:*:*:*:*:*:*:* cpe:2.3:o:fortinet:fortios:*:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortianalyzer:*:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
16 Jan 2025, 10:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-01-16 10:15
Updated : 2025-02-03 21:54
NVD link : CVE-2024-50563
Mitre link : CVE-2024-50563
JSON object : View
Products Affected
fortinet
- fortimanager_cloud
- fortianalyzer_cloud
- fortios
- fortiproxy
- fortianalyzer
- fortimanager
CWE