216.73.217.80

CVE-2024-47573

· Published 14/03/2025 15:15 · Modified 14/03/2025 15:15

Labels: CVE-2024-47573 2025-03-14CVE-2024-47573CWE-354[email protected]

Essential information

Published
14/03/2025 15:15
Modified
14/03/2025 15:15
Author
Creator
CVSS
6.5 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H

CVSS metrics

Description

An improper validation of integrity check value vulnerability [CWE-354] in FortiNDR version 7.4.2 and below, version 7.2.1 and below, version 7.1.1 and below, version 7.0.6 and below may allow an authenticated attacker with at least Read/Write permission on system maintenance to install a corrupted firmware image.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
fortinet / fortindr cpe:2.3:a:fortinet:fortindr:7.4.2:*:*:*:*:*:*:*
fortinet / fortindr cpe:2.3:a:fortinet:fortindr:7.2.1:*:*:*:*:*:*:*
fortinet / fortindr cpe:2.3:a:fortinet:fortindr:7.1.1:*:*:*:*:*:*:*
fortinet / fortindr cpe:2.3:a:fortinet:fortindr:7.0.6:*:*:*:*:*:*:*

References