AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-25603

MEDIUM · CVSS 5.4 EPSS 0.40%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-11-14 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.4. It affects Fortinet.

CVE
CVE-2023-25603
Severity
MEDIUM
CVSS
5.4
EPSS
0.40%
Fortinet

Original NVD Description

A permissive cross-domain policy with untrusted domains vulnerability in Fortinet FortiADC 7.1.0 - 7.1.1, FortiDDoS-F 6.3.0 - 6.3.4 and 6.4.0 - 6.4.1 allow an unauthorized attacker to carry out privileged actions and retrieve sensitive information via crafted web requests.

Related CVEs

Other vulnerabilities affecting the same vendor(s)