An incorrect authorization vulnerability [CWE-863] in FortiSIEM 7.2 all versions, 7.1 all versions, 7.0 all versions, 6.7 all versions, 6.6 all versions, 6.5 all versions, 6.4 all versions, 6.3 all versions, 6.2 all versions, 6.1 all versions, 5.4 all versions, 5.3 all versions, may allow an authenticated attacker to perform unauthorized operations on incidents via crafted HTTP requests.
References
Link | Resource |
---|---|
https://fortiguard.fortinet.com/psirt/FG-IR-24-377 | Vendor Advisory |
Configurations
History
25 Jul 2025, 14:25
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:fortinet:fortisiem:*:*:*:*:*:*:*:* | |
First Time |
Fortinet fortisiem
Fortinet |
|
Summary |
|
|
References | () https://fortiguard.fortinet.com/psirt/FG-IR-24-377 - Vendor Advisory |
11 Mar 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-03-11 15:15
Updated : 2025-07-25 14:25
NVD link : CVE-2024-55592
Mitre link : CVE-2024-55592
CVE.ORG link : CVE-2024-55592
JSON object : View
Products Affected
fortinet
- fortisiem
CWE
CWE-863
Incorrect Authorization