Fortinet Fortiwebmanager vulnerabilities
4 known vulnerabilities affecting fortinet/fortiwebmanager.
Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH4
Vulnerabilities
Page 1 of 1
CVE-2024-23668P3HIGHCVSS 8.8≥ 6.2.3, < 6.2.5≥ 7.0.0, < 7.0.5+5 more2024-06-03
CVE-2024-23668 [HIGH] CWE-20 CVE-2024-23668: An improper authorization in Fortinet FortiWebManager 7.2.0, FortiWebManager 7.0.0 through 7.0.4, Fo
An improper authorization in Fortinet FortiWebManager 7.2.0, FortiWebManager 7.0.0 through 7.0.4, FortiWebManager 6.3.0, FortiWebManager 6.2.3 through 6.2.4, FortiWebManager 6.0.2 allows attacker to execute unauthorized code or commands via HTTP requests or CLI.
nvd
CVE-2024-23669P3HIGHCVSS 8.8≥ 6.2.3, < 6.2.5≥ 7.0.0, < 7.0.5+5 more2024-06-05
CVE-2024-23669 [HIGH] CWE-20 CVE-2024-23669: An improper authorization in Fortinet FortiWebManager 7.2.0, FortiWebManager 7.0.0 through 7.0.4, Fo
An improper authorization in Fortinet FortiWebManager 7.2.0, FortiWebManager 7.0.0 through 7.0.4, FortiWebManager 6.3.0, FortiWebManager 6.2.3 through 6.2.4, FortiWebManager 6.0.2 allows attacker to execute unauthorized code or commands via HTTP requests or CLI.
nvd
CVE-2024-23670P3HIGHCVSS 8.8≥ 6.2.3, < 6.2.5≥ 7.0.0, < 7.0.5+5 more2024-06-03
CVE-2024-23670 [HIGH] CWE-285 CVE-2024-23670: An improper authorization in Fortinet FortiWebManager 7.2.0, FortiWebManager 7.0.0 through 7.0.4, Fo
An improper authorization in Fortinet FortiWebManager 7.2.0, FortiWebManager 7.0.0 through 7.0.4, FortiWebManager 6.3.0, FortiWebManager 6.2.3 through 6.2.4, FortiWebManager 6.0.2 allows attacker to execute unauthorized code or commands via HTTP requests or CLI.
nvd
CVE-2024-23667P3HIGHCVSS 8.8≥ 6.2.3, < 6.2.5≥ 7.0.0, < 7.0.5+5 more2024-06-03
CVE-2024-23667 [HIGH] CWE-285 CVE-2024-23667: An improper authorization in Fortinet FortiWebManager 7.2.0, FortiWebManager 7.0.0 through 7.0.4, Fo
An improper authorization in Fortinet FortiWebManager 7.2.0, FortiWebManager 7.0.0 through 7.0.4, FortiWebManager 6.3.0, FortiWebManager 6.2.3 through 6.2.4, FortiWebManager 6.0.2 allows attacker to execute unauthorized code or commands via HTTP requests or CLI.
nvd