A permissive list of allowed inputs vulnerability [CWE...
Moderate severity
Unreviewed
Published
Apr 11, 2023
to the GitHub Advisory Database
•
Updated Apr 11, 2024
Description
Published by the National Vulnerability Database
Apr 11, 2023
Published to the GitHub Advisory Database
Apr 11, 2023
Last updated
Apr 11, 2024
A permissive list of allowed inputs vulnerability [CWE-183] in FortiGate version 7.2.3 and below, version 7.0.9 and below Policy-based NGFW Mode may allow an authenticated SSL-VPN user to bypass the policy via bookmarks in the web portal.
References