CVE-2024-52966: Fortinet Fortianalyzer

Low severity, CVSS 2.3. EPSS: 0.2% chance of exploitation in the next 30 days.

An exposure of sensitive information to an unauthorized actor in Fortinet FortiAnalyzer 6.4.0 through 7.6.0 allows attacker to cause information disclosure via filter manipulation.

Affected products

  • Fortinet Fortianalyzer: from 6.4.0, before 7.2.8 (fixed in 7.2.8); from 7.4.0, before 7.4.5 (fixed in 7.4.5); version 7.6.0 only

Published 2025-02-11. Last modified 2026-06-17.