CVE-2024-45327

CVSS V2 None CVSS V3 None
Description
An improper authorization vulnerability [CWE-285] in FortiSOAR version 7.4.0 through 7.4.3, 7.3.0 through 7.3.2, 7.2.0 through 7.2.2, 7.0.0 through 7.0.3 change password endpoint may allow an authenticated attacker to perform a brute force attack on users and administrators password via crafted HTTP requests.
Overview
  • CVE ID
  • CVE-2024-45327
  • Assigner
  • fortinet
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-09-11T09:53:46.087Z
  • Last Modified Date
  • 2024-09-12T03:55:24.954Z
References
History
Created Old Value New Value Data Type Notes
2024-09-12 13:10:40 Added to TrackCVE