fortinet fortiportal CVE-2017-7337 is a vulnerability in Fortinet Fortiportal
Published on May 26, 2017

An improper Access Control vulnerability in Fortinet FortiPortal versions 4.0.0 and below allows an attacker to interact with unauthorized VDOMs or enumerate other ADOMs via another user's stolen session and CSRF tokens or the adomName parameter in the /fpc/sec/customer/policy/getAdomVersion request.

NVD


Products Associated with CVE-2017-7337

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2017-7337 are published in Fortinet Fortiportal:

 

Affected Versions

Fortinet, Inc. Fortinet FortiPortal Version FortiPortal versions 4.0.0 and below is affected by CVE-2017-7337

Exploit Probability

EPSS
0.24%
Percentile
47.03%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.