GHSA-4f6r-97c9-vqq2MediumCVSS 4.3

An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] in FortiOS...

Published
June 10, 2025
Last Modified
June 9, 2026

🔗 CVE IDs covered (1)

📋 Description

An Exposure of Sensitive Information to an Unauthorized Actor vulnerability [CWE-200] in FortiOS version 7.6.0, version 7.4.7 and below, 7.2 all versions, 7.0 all versions, 6.4 all versions SSL-VPN web-mode may allow an authenticated user to access full SSL-VPN settings via crafted URL.

🔗 References (4)