CVE-2020-9286: Medium severity Fortinet Fortiadc Firmware vulnerability
Published Apr 7, 2020
·Updated
An improper authorization vulnerability in FortiADC may allow a remote authenticated user with low privileges to perform certain actions such as rebooting the system.
Affected Software
4 affected components
Fortinet Fortiadc Firmware<=5.3.4
Fortinet FortiADC
All of the following
Fortinet Fortiadc Firmware<=5.3.4
Fortinet FortiADC
Event History
Apr 7, 2020
CVE Published
via MITRE·06:52 PM
Data Sourced
via MITRE·06:52 PM
DescriptionWeakness
Data Sourced
via NVD·07:15 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is CVE-2020-9286?
CVE-2020-9286 is an improper authorization vulnerability in FortiADC.
2
Who is affected by CVE-2020-9286?
Remote authenticated users with low privileges on FortiADC firmware version up to and including 5.3.4 are affected.
3
What can a remote authenticated user with low privileges do if they exploit CVE-2020-9286?
They can perform certain actions such as rebooting the system.
4
What is the severity of CVE-2020-9286?
CVE-2020-9286 has a severity rating of 6.5, which is considered medium.
5
How can I fix CVE-2020-9286?
To fix CVE-2020-9286, update your FortiADC firmware to a version higher than 5.3.4.