VDB

CVE-2023-48789

CVE-2023-48789 PUBLISHED CVSS 4.099999904632568 MEDIUM

A client-side enforcement of server-side security in Fortinet FortiPortal version 6.0.0 through 6.0.14 allows attacker to improper access control via crafted HTTP requests.

EPSS 0.48% · 39.4th percentile

Risk Scores

CVSS 3.1
4.099999904632568
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N/E:P/RL:X/RC:X
EPSS Score
0.48%
39.4th percentile

Affected Products

VendorProductVersions
FortinetFortiPortal6.0.0
fortinetfortiportal6.0.0

Timeline

  • May 15, 2024 CVE Published
  • Jun 3, 2024 EPSS Score
  • Jun 26, 2024 EPSS Score
  • Jul 20, 2024 EPSS Score
  • Aug 12, 2024 EPSS Score
  • Sep 5, 2024 EPSS Score
  • Sep 28, 2024 EPSS Score
  • Oct 5, 2024 Coalition ESS Score
  • Oct 21, 2024 EPSS Score
  • Nov 14, 2024 EPSS Score
  • Dec 8, 2024 EPSS Score
  • Dec 31, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›