Vulnerability CVE-2024-21761


Published: 2024-03-12

Description:
An improper authorization vulnerability [CWE-285] in FortiPortal version 7.2.0, and versions 7.0.6 and below reports may allow a user to download other organizations reports via modification in the request payload.

Type:

CWE-285

(Improper Authorization)

 References:
https://fortiguard.com/psirt/FG-IR-24-016

Copyright 2024, cxsecurity.com

 

Back to Top