Lucene search

K
cvelistFortinetCVELIST:CVE-2017-14191
HistoryMar 20, 2018 - 1:00 p.m.

CVE-2017-14191

2018-03-2013:00:00
fortinet
www.cve.org
2

AI Score

5.7

Confidence

High

EPSS

0.001

Percentile

48.7%

An Improper Access Control vulnerability in Fortinet FortiWeb 5.6.0 up to but not including 6.1.0 under β€œSigned Security Mode”, allows attacker to bypass the signed user cookie protection by removing the FortiWeb own protection session cookie.

CNA Affected

[
  {
    "product": "FortiWeb",
    "vendor": "Fortinet, Inc.",
    "versions": [
      {
        "status": "affected",
        "version": "5.6.0 and above"
      }
    ]
  }
]

AI Score

5.7

Confidence

High

EPSS

0.001

Percentile

48.7%

Related for CVELIST:CVE-2017-14191