← Back to CVE List

CVE-2024-45323

Published: 2024-09-10T15:15Z
Last Modified: 2024-09-20T16:23Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An improper access control vulnerability [CWE-284] in FortiEDR Manager API 6.2.0 through 6.2.2, 6.0 all versions may allow in a shared environment context an authenticated admin with REST API permissions in his profile and restricted to a specific organization to access backend logs that include information related to other organizations. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt