← back
CVE-2024-36505

CVE-2024-36505

CVSS 4.7 MEDIUMEPSS 0.2%CWE-284
An improper access control vulnerability [CWE-284] in FortiOS 7.4.0 through 7.4.3, 7.2.5 through 7.2.7, 7.0.12 through 7.0.14 and 6.4.x may allow an attacker who has already successfully obtained write access to the underlying system (via another hypothetical exploit) to bypass the file integrity checking system.
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N/E:P/RL:X/RC:R
Affected products
Fortinet · FortiOS

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →