FG-IR-24-013: Authorization bypass in SSLVPN bookmarks
Published Mar 12, 2024
·Updated
An authorization bypass through user-controlled key vulnerability [CWE-639] in FortiOS and FortiProxy SSLVPN may allow an authenticated attacker to gain access to another user’s bookmark via URL manipulation.
Affected Software
7 affected componentsFixes available
Fortinet FortiOS>=7.4.0<=7.4.1
Fortinet FortiOS>=7.2.0<=7.2.6
Fortinet FortiOS>=7.0.1<=7.0.13
Fortinet FortiOS>=6.4.7<=6.4.14
Fortinet FortiProxy>=7.4.0<=7.4.2
Fortinet FortiProxy>=7.2.0<=7.2.8
Fortinet FortiProxy>=7.0.0<=7.0.14
Event History
Mar 12, 2024
Advisory Published
via FortiGuard·12:00 AM
Data Sourced
via FortiGuard·12:00 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of FG-IR-24-013?
FG-IR-24-013 is classified as a medium severity vulnerability.
2
How do I fix FG-IR-24-013?
To fix FG-IR-24-013, upgrade your FortiOS or FortiProxy to the appropriate versions specified in the advisory.
3
Which versions of FortiOS are affected by FG-IR-24-013?
FortiOS versions 7.4.0 to 7.4.1, 7.2.0 to 7.2.6, 7.0.1 to 7.0.13, and 6.4.7 to 6.4.14 are affected by FG-IR-24-013.
4
Which versions of FortiProxy are affected by FG-IR-24-013?
FortiProxy versions 7.4.0 to 7.4.2, 7.2.0 to 7.2.8, and 7.0.0 to 7.0.14 are affected by FG-IR-24-013.
5
Can FG-IR-24-013 be exploited remotely?
FG-IR-24-013 can potentially be exploited by an authenticated attacker through URL manipulation.