ZeroHour

CVE-2022-23443

CVSS 3.1
7.5 high
EPSS
1%p68
Published
()
Modified
Description

An improper access control in Fortinet FortiSOAR before 7.2.0 allows unauthenticated attackers to access gateway API data via crafted HTTP GET requests.

Vendors
fortinet
Products
fortisoar
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.