ZeroHour

CVE-2016-4066

CVSS 3.0
8.8 high
EPSS
<1%p57
Published
()
Modified
Description

Cross-site request forgery (CSRF) vulnerability in Fortinet FortiWeb before 5.5.3 allows remote attackers to hijack the authentication of administrators for requests that change the password via unspecified vectors.

Vendors
fortinet
Products
fortiweb
Weakness
CWE-352
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.