QID 730623
Date Published: 2022-10-14
QID 730623: FortiOS Authentication Bypass Vulnerability on Administrative Interface (HTTP/HTTPS) (FG-IR-22-377)(Unauthenticated Check)
An authentication bypass using an alternate path or channel [CWE-88] in FortiOS may allow an unauthenticated attacker to perform operations on the administrative interface via specially crafted HTTP or HTTPS requests.
Affected Products:
FortiOS version from 7.0.0 to 7.0.6
FortiOS version from 7.2.0 to 7.2.1
QID Detection Logic (Unauthenticated):
The QID sends a specially crafted GET request to endpoint /api/v2/cmdb/system/admin to determine if the host is vulnerable or not by examining the response.
Vulnerable version of FortiOS may allow an unauthenticated attacker to perform operations on the administrative interface via specially crafted HTTP or HTTPS requests.
Vendor has released fixes to address this vulnerability
For more details refer to FG-IR-22-377Workaround:
Please refer to FG-IR-22-377 for information on workaround.
- FG-IR-22-377 -
www.fortiguard.com/psirt/FG-IR-22-377
CVEs related to QID 730623
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| FG-IR-22-377 |
|