CVE-2023-46712: Fortinet Fortiportal
High severity, CVSS 8.8. EPSS: 0.7% chance of exploitation in the next 30 days.
A improper access control in Fortinet FortiPortal version 7.0.0 through 7.0.6, Fortinet FortiPortal version 7.2.0 through 7.2.1 allows attacker to escalate its privilege via specifically crafted HTTP requests.
Affected products
- Fortinet Fortiportal: from 7.0.0, up to and including 7.0.6; from 7.2.0, up to and including 7.2.1
Published 2024-01-10. Last modified 2026-06-17.