CVE-2024-23105: High severity fortinet fortiportal vulnerability
A Use Of Less Trusted Source [CWE-348] vulnerability in Fortinet FortiPortal version 7.0.0 through 7.0.6 and version 7.2.0 through 7.2.1 allows an unauthenticated attack to bypass IP protection through crafted HTTP or HTTPS packets.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-23105?
CVE-2024-23105 is considered a high severity vulnerability allowing unauthorized access to sensitive functionalities.
How do I fix CVE-2024-23105?
To fix CVE-2024-23105, you should upgrade Fortinet FortiPortal to the latest release, ensuring your version is beyond 7.0.6 or 7.2.1.
What versions of FortiPortal are affected by CVE-2024-23105?
CVE-2024-23105 affects FortiPortal versions 7.0.0 through 7.0.6 and 7.2.0 through 7.2.1.
What type of attack is associated with CVE-2024-23105?
CVE-2024-23105 allows unauthenticated attackers to bypass IP protection using crafted HTTP or HTTPS packets.
What is the nature of the vulnerability in CVE-2024-23105?
CVE-2024-23105 is a Use Of Less Trusted Source vulnerability classified under CWE-348.