CVE-2024-36510 Information
Jan 15, 2025
cve
Description
An observable response discrepancy vulnerability [CWE-204] in FortiClientEMS 7.4.0 7.2.0 through 7.2.4 7.0 all versions and FortiSOAR 7.5.0 7.4.0 through 7.4.4 7.3.0 through 7.3.2 7.2 all versions 7.0 all versions 6.4 all versions may allow an unauthenticated attacker to enumerate valid users via observing login request responses.
Reference
https://fortiguard.fortinet.com/psirt/FG-IR-24-071
Share on: