CVE-2024-48887

A unverified password change vulnerability in Fortinet FortiSwitch GUI may allow a remote unauthenticated attacker to change admin passwords via a specially crafted request
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:fortinet:fortiswitch:*:*:*:*:*:*:*:*
cpe:2.3:o:fortinet:fortiswitch:*:*:*:*:*:*:*:*
cpe:2.3:o:fortinet:fortiswitch:*:*:*:*:*:*:*:*
cpe:2.3:o:fortinet:fortiswitch:*:*:*:*:*:*:*:*
cpe:2.3:o:fortinet:fortiswitch:7.6.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-04-08 17:15

Updated : 2025-07-23 16:03


NVD link : CVE-2024-48887

Mitre link : CVE-2024-48887

CVE.ORG link : CVE-2024-48887


JSON object : View

Products Affected

fortinet

  • fortiswitch
CWE
CWE-620

Unverified Password Change