Fortinet FortiAnalyzer
cpe:2.3:a:fortinet:fortianalyzer:*:*:*:*:*:*:*, +1 more
- >= 7.6.0, <= 7.6.3
- >= 7.4.0, <= 7.4.6
- ~7.2
- ~7.0
- ~6.4
A vulnerability allowing improper authentication has been identified in Fortinet FortiAnalyzer versions 7.6.0 through 7.6.3 and prior to 7.4.6. This vulnerability allows an unauthenticated attacker to access information related to the device's health and status or to cause a denial-of-service condition by sending crafted OFTP requests.
Exploitation of this vulnerability could lead to unauthorized access to device health and status information or cause a denial-of-service condition on the affected device.
Users of Fortinet FortiAnalyzer should upgrade to version 7.6.4 or above if they are using FortiAnalyzer 7.6, or to version 7.4.7 or above if they are using FortiAnalyzer 7.4. For those on FortiAnalyzer 7.2, 7.0, or 6.4, migration to a fixed release is recommended.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.