CVE-2024-27782
8.1HIGHMultiple insufficient session expiration weaknesses [CWE-613] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an attacker to re-use stolen old session tokens to perform unauthorized operations vi
Published: 7/9/2024Updated: 1/9/2026
Description
Multiple insufficient session expiration weaknesses [CWE-613] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an attacker to re-use stolen old session tokens to perform unauthorized operations via crafted requests.
AI AnalysisPowered by AI
Affected Products
fortinetfortiaiops
2.0.0
References
- https://fortiguard.fortinet.com/psirt/FG-IR-24-069Vendor Advisory
- https://fortiguard.fortinet.com/psirt/FG-IR-24-069Vendor Advisory