CVE-2024-31491: Readonly user could execute sensitive operations
A client-side enforcement of server-side security vulnerability [CWE-602] in FortiSandbox may allow an authenticated attacker with at least read-only permission to download or upload configuration.
Other sources
A client-side enforcement of server-side security vulnerability in Fortinet FortiSandbox 4.4.0 through 4.4.4, FortiSandbox 4.2.1 through 4.2.6 allows attacker to execute unauthorized code or commands via HTTP requests.
— MITRE
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-31491?
CVE-2024-31491 is classified as a medium severity vulnerability due to its potential for unauthorized code execution.
How do I fix CVE-2024-31491?
To fix CVE-2024-31491, upgrade Fortinet FortiSandbox to version 4.4.5 or later, or to version 4.2.7 or later.
What versions of Fortinet FortiSandbox are affected by CVE-2024-31491?
CVE-2024-31491 affects Fortinet FortiSandbox versions 4.4.0 through 4.4.4 and 4.2.0 through 4.2.6.
What type of vulnerability is CVE-2024-31491?
CVE-2024-31491 is a client-side enforcement of server-side security vulnerability.
Can CVE-2024-31491 lead to data breaches?
Yes, CVE-2024-31491 can potentially allow attackers to execute unauthorized commands, leading to data breaches.