← العودة للجدول
CVE-2022-38375
CVE-2022-38375 — An improper authorization vulnerability [CWE-285]  in Fortinet FortiNAC version
📅 2023-02-16
🔴 Critical 🔥 No NVD Exploit Fortinet CVSS 9.1 🎯 EPSS 0.61%

📋 الوصف الكامل

An improper authorization vulnerability [CWE-285]  in Fortinet FortiNAC version 9.4.0 through 9.4.1 and before 9.2.6 allows an unauthenticated user to perform some administrative operations over the FortiNAC instance via crafted HTTP POST requests.

💻 الأنظمة المتأثرة

Fortinet

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2022-38375

📡 المصدر

NVD

✅ الحلول والتخفيف

Update to v9.4.0 | Fortinet PSIRT Advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←