A vulnerability exists in in FortiManager 5.2.1 and earlier and 5.0.10 and earlier in the WebUI FTP backup page
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
Link | Tags |
---|---|
https://fortiguard.com/psirt/FG-IR-15-011 | vendor advisory |
http://www.securityfocus.com/bid/74444 | third party advisory vdb entry |
http://www.securitytracker.com/id/1032188 | third party advisory vdb entry |