CVE-2022-30298
7.0HIGHAn improper privilege management vulnerability [CWE-269] in Fortinet FortiSOAR before 7.2.1 allows a GUI user who has already found a way to modify system files (via another, unrelated and hypothetica
Published: 9/6/2022Updated: 11/21/2024
Description
An improper privilege management vulnerability [CWE-269] in Fortinet FortiSOAR before 7.2.1 allows a GUI user who has already found a way to modify system files (via another, unrelated and hypothetical exploit) to execute arbitrary Python commands as root.
AI AnalysisPowered by AI
Affected Products
fortinetfortisoar
fortinetfortisoar
fortinetfortisoar
7.2.0
References
- https://fortiguard.com/psirt/FG-IR-22-152Vendor Advisory
- https://fortiguard.com/psirt/FG-IR-22-152Vendor Advisory