CVE-2024-36511: Low severity fortinet fortiadc vulnerability
An improperly implemented security check for standard vulnerability [CWE-358] in FortiADC Web Application Firewall (WAF) 7.4.0 through 7.4.4, 7.2 all versions, 7.1 all versions, 7.0 all versions, 6.2 all versions, 6.1 all versions, 6.0 all versions when cookie security policy is enabled may allow an attacker, under specific conditions, to retrieve the initial encrypted and signed cookie protected by the feature
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-36511?
CVE-2024-36511 has a medium severity rating due to its potential impact on the security of affected systems.
How do I fix CVE-2024-36511?
To mitigate CVE-2024-36511, upgrade FortiADC to a version later than 7.4.4.
What versions of FortiADC are affected by CVE-2024-36511?
CVE-2024-36511 affects FortiADC versions 6.0 through 7.4.4, as well as all versions of 7.2 and 7.1.
Can CVE-2024-36511 lead to unauthorized access?
Yes, CVE-2024-36511 could potentially allow attackers to bypass security checks, leading to unauthorized access.
Is there a workaround for CVE-2024-36511 until a patch is applied?
Currently, no specific workaround is recommended for CVE-2024-36511, so upgrading to a secure version is essential.