First published: Wed Apr 06 2022(Updated: )
A improper control of a resource through its lifetime in Fortinet FortiEDR version 5.0.3 and earlier allows attacker to make the whole application unresponsive via changing its root directory access permission.
Credit: psirt@fortinet.com
Affected Software | Affected Version | How to fix |
---|---|---|
Fortinet Fortiedr | =4.0.0 | |
Fortinet Fortiedr | =5.0.0 | |
Fortinet Fortiedr | =5.0.1 | |
Fortinet Fortiedr | =5.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-23446 is a vulnerability in Fortinet FortiEDR version 5.0.3 and earlier that allows an attacker to make the whole application unresponsive by changing its root directory access permission.
CVE-2022-23446 has a severity rating of 4.4, which is considered medium.
Fortinet FortiEDR versions 4.0.0, 5.0.0, 5.0.1, and 5.0.2 are affected by CVE-2022-23446.
An attacker can exploit CVE-2022-23446 by changing the root directory access permission, which results in making the whole FortiEDR application unresponsive.
You can find more information about CVE-2022-23446 at the following link: [https://fortiguard.com/psirt/FG-IR-22-052](https://fortiguard.com/psirt/FG-IR-22-052)