AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2023-28001

MEDIUM · CVSS 4.1 EPSS 0.51%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2023-07-11 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2023-28001
Severity
MEDIUM
CVSS
4.1
EPSS
0.51%
Fortinet FortiOS

Original NVD Description

An insufficient session expiration in Fortinet FortiOS 7.0.0 - 7.0.12 and 7.2.0 - 7.2.4 allows an attacker to execute unauthorized code or commands via reusing the session of a deleted user in the REST API.