CVE-2023-48786
4.3MEDIUMA server-side request forgery vulnerability [CWE-918] in Fortinet FortiClientEMS version 7.4.0 through 7.4.2 and before 7.2.6 may allow an authenticated attacker to perform internal requests via craft
Publicado: 6/10/2025Actualizado: 7/16/2025
Descripción
A server-side request forgery vulnerability [CWE-918] in Fortinet FortiClientEMS version 7.4.0 through 7.4.2 and before 7.2.6 may allow an authenticated attacker to perform internal requests via crafted HTTP or HTTPS requests.
Análisis IAImpulsado por IA
Productos Afectados
fortinetforticlientems
fortinetforticlientems
fortinetforticlientems
fortinetforticlientems
Referencias
- https://fortiguard.fortinet.com/psirt/FG-IR-23-342Vendor Advisory