Tracker / CVE-2024-33506
CVE-2024-33506
Low 3.3
An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiManager 7.4.2 and below, 7.2.5 and below, 7.0.12 and below allows a remote authenticated attacker assigned to an Administrative Domain (ADOM) to access device summary of unauthorized ADOMs via crafted HTTP requests.
Affected products and versions
| fortinet | fortimanager · 7.0.0 → 7.2.6 |
|---|---|
| fortinet | fortimanager · 7.4.0 → 7.4.3 |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.