CVE-2024-27782
8.1HIGHMultiple insufficient session expiration weaknesses [CWE-613] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an attacker to re-use stolen old session tokens to perform unauthorized operations vi
게시됨: 7/9/2024업데이트됨: 1/9/2026
설명
Multiple insufficient session expiration weaknesses [CWE-613] vulnerability in Fortinet FortiAIOps 2.0.0 may allow an attacker to re-use stolen old session tokens to perform unauthorized operations via crafted requests.
AI 분석AI 기반
영향받는 제품
fortinetfortiaiops
2.0.0
참조
- https://fortiguard.fortinet.com/psirt/FG-IR-24-069Vendor Advisory
- https://fortiguard.fortinet.com/psirt/FG-IR-24-069Vendor Advisory