CVE-2024-40591 - Fortinet FortiOS Privilege Escalation Vulnerability

CVE ID : CVE-2024-40591 Published : Feb. 11, 2025, 5:15 p.m. | 59 minutes ago Description : An incorrect privilege assignment vulnerability [CWE-266] in Fortinet FortiOS version 7.6.0, 7.4.0 through 7.4.4, 7.2.0 through 7.2.9 and before 7.0.15 allows an authenticated admin whose access profile has the Security Fabric permission to escalate their privileges to super-admin by connecting the targetted FortiGate to a malicious upstream FortiGate they control. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

Feb 11, 2025 - 19:16
 0  0
CVE-2024-40591 - Fortinet FortiOS Privilege Escalation Vulnerability
CVE ID : CVE-2024-40591
Published : Feb. 11, 2025, 5:15 p.m. | 59 minutes ago
Description : An incorrect privilege assignment vulnerability [CWE-266] in Fortinet FortiOS version 7.6.0, 7.4.0 through 7.4.4, 7.2.0 through 7.2.9 and before 7.0.15 allows an authenticated admin whose access profile has the Security Fabric permission to escalate their privileges to super-admin by connecting the targetted FortiGate to a malicious upstream FortiGate they control.
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...