CVE-2024-27782
8.1HIGHMultiple insufficient session expiration weaknesses [CWE-613] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an attacker to re-use stolen old session tokens to perform unauthorized operations vi
Publicado: 7/9/2024Actualizado: 1/9/2026
Descripción
Multiple insufficient session expiration weaknesses [CWE-613] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an attacker to re-use stolen old session tokens to perform unauthorized operations via crafted requests.
Análisis IAImpulsado por IA
Productos Afectados
fortinetfortiaiops
2.0.0
Referencias
- https://fortiguard.fortinet.com/psirt/FG-IR-24-069Vendor Advisory
- https://fortiguard.fortinet.com/psirt/FG-IR-24-069Vendor Advisory