imPC@ndo IT

Tracker / CVE-2024-36510

CVE-2024-36510

Medium 5.3

An observable response discrepancy vulnerability [CWE-204] in FortiClientEMS 7.4.0, 7.2.0 through 7.2.4, 7.0 all versions, and FortiSOAR 7.5.0, 7.4.0 through 7.4.4, 7.3.0 through 7.3.2, 7.2 all versions, 7.0 all versions, 6.4 all versions may allow an unauthenticated attacker to enumerate valid users via observing login request responses.

Affected products and versions

fortinet forticlientems
fortinet forticlientems · 7.0.0 → 7.2.5
fortinet fortisoar
fortinet fortisoar · 6.4.0 → 7.3.3
fortinet fortisoar · 7.4.0 → 7.4.5

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References