CVE-2017-17544: Critical severity fortios vulnerability
Published Apr 9, 2019
·Updated
A privilege escalation vulnerability in Fortinet FortiOS 6.0.0 to 6.0.6, 5.6.0 to 5.6.10, 5.4 and below allows admin users to elevate their profile to superadmin via restoring modified configurations.
Affected Software
3 affected components
Fortinet FortiOS<=5.4.0
Fortinet FortiOS>=5.6.0<=5.6.10
Fortinet FortiOS>=6.0.0<=6.0.6
Event History
Apr 9, 2019
CVE Published
via MITRE·03:40 PM
Data Sourced
via MITRE·03:40 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-17544?
CVE-2017-17544 has a high severity rating due to its potential for privilege escalation.
2
How do I fix CVE-2017-17544?
To fix CVE-2017-17544, update your Fortinet FortiOS to the latest patched version.
3
Which versions of Fortinet FortiOS are affected by CVE-2017-17544?
CVE-2017-17544 affects FortiOS versions 6.0.0 to 6.0.6, 5.6.0 to 5.6.10, and 5.4 and below.
4
Who can exploit CVE-2017-17544?
Admin users with access to modified configurations can exploit CVE-2017-17544 to elevate their privileges.
5
What are the potential consequences of CVE-2017-17544?
The potential consequences of CVE-2017-17544 include unauthorized access to sensitive configurations and elevated privileges on the system.