SB2023091601 - Security restrictions bypass in Fortinet FortiWeb
Published: September 16, 2023
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Protection Mechanism Failure (CVE-ID: CVE-2023-34984)
The vulnerability allows a remote attacker to bypass implemented security restrictions.
The vulnerability exists due to insufficient implementation of security measures. An attacker can bypass implemented security restrictions against XSS and CSRF attacks.
Remediation
Install update from vendor's website.