Vulnerability Description
A improper privilege management in Fortinet FortiNAC version 9.4.0 through 9.4.1, FortiNAC version 9.2.0 through 9.2.6, FortiNAC version 9.1.0 through 9.1.8, FortiNAC all versions 8.8, FortiNAC all versions 8.7, FortiNAC all versions 8.6, FortiNAC all versions 8.5, FortiNAC version 8.3.7 allows attacker to escalation of privilege via specially crafted commands.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Fortinet | Fortinac | >= 8.5.0, <= 8.5.4 |
Related Weaknesses (CWE)
References
- https://fortiguard.com/psirt/FG-IR-22-309Vendor Advisory
- https://fortiguard.com/psirt/FG-IR-22-309Vendor Advisory
FAQ
What is CVE-2022-39953?
CVE-2022-39953 is a vulnerability with a CVSS score of 7.8 (HIGH). A improper privilege management in Fortinet FortiNAC version 9.4.0 through 9.4.1, FortiNAC version 9.2.0 through 9.2.6, FortiNAC version 9.1.0 through 9.1.8, FortiNAC all versions 8.8, FortiNAC all ve...
How severe is CVE-2022-39953?
CVE-2022-39953 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-39953?
Check the references section above for vendor advisories and patch information. Affected products include: Fortinet Fortinac.