CVE-2022-27488

CVSS V2 None CVSS V3 None
Description
A cross-site request forgery (CSRF) in Fortinet FortiVoiceEnterprise version 6.4.x, 6.0.x, FortiSwitch version 7.0.0 through 7.0.4, 6.4.0 through 6.4.10, 6.2.0 through 6.2.7, 6.0.x, FortiMail version 7.0.0 through 7.0.3, 6.4.0 through 6.4.6, 6.2.x, 6.0.x FortiRecorder version 6.4.0 through 6.4.2, 6.0.x, 2.7.x, 2.6.x, FortiNDR version 1.x.x allows a remote unauthenticated attacker to execute commands on the CLI via tricking an authenticated administrator to execute malicious GET requests.
Overview
  • CVE ID
  • CVE-2022-27488
  • Assigner
  • fortinet
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-12-13T06:39:42.998Z
  • Last Modified Date
  • 2023-12-13T06:39:42.998Z
References
Reference URL Reference Tags
https://fortiguard.com/psirt/FG-IR-22-038
History
Created Old Value New Value Data Type Notes
2024-06-24 17:26:28 Added to TrackCVE