CVE-2023-47536

CVSS V2 None CVSS V3 None
Description
An improper access control vulnerability [CWE-284] in FortiOS version 7.2.0, version 7.0.13 and below, version 6.4.14 and below and FortiProxy version 7.2.3 and below, version 7.0.9 and below, version 2.0.12 and below may allow a remote unauthenticated attacker to bypass the firewall deny geolocalisation policy via timing the bypass with a GeoIP database update.
Overview
  • CVE ID
  • CVE-2023-47536
  • Assigner
  • fortinet
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-12-13T08:06:01.706Z
  • Last Modified Date
  • 2023-12-13T08:06:01.706Z
References
Reference URL Reference Tags
https://fortiguard.com/psirt/FG-IR-23-432
History
Created Old Value New Value Data Type Notes
2024-06-25 09:26:56 Added to TrackCVE