CVE-2017-7337 is a vulnerability in Fortinet Fortiportal
Published on May 26, 2017
An improper Access Control vulnerability in Fortinet FortiPortal versions 4.0.0 and below allows an attacker to interact with unauthorized VDOMs or enumerate other ADOMs via another user's stolen session and CSRF tokens or the adomName parameter in the /fpc/sec/customer/policy/getAdomVersion request.
Products Associated with CVE-2017-7337
Want to know whenever a new CVE is published for Fortinet Fortiportal? stack.watch will email you.
Affected Versions
Fortinet, Inc. Fortinet FortiPortal Version FortiPortal versions 4.0.0 and below is affected by CVE-2017-7337Exploit Probability
EPSS
0.24%
Percentile
47.10%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.