CVE-2023-44248: Fortinet Fortiedr

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

An improper access control vulnerability [CWE-284] in FortiEDRCollectorWindows version 5.2.0.4549 and below, 5.0.3.1007 and below, 4.0 all may allow a local attacker to prevent the collector service to start in the next system reboot by tampering with some registry keys of the service.

Affected products

  • Fortinet Fortiedr: from 5.0.3, up to and including 5.0.3.1007; from 5.2.0, up to and including 5.2.0.4549; version 4.0.0 only

Published 2023-11-14. Last modified 2026-06-17.