CVE

Id
70410  
CVE No.
CVE-2014-3115  
Status
Candidate  
Description
Multiple cross-site request forgery (CSRF) vulnerabilities in the web administration console in Fortinet FortiWeb before 5.2.0 allow remote attackers to hijack the authentication of administrators via system/config/adminadd and other unspecified vectors.  
Phase
Assigned (20140429)  
Votes
None (candidate not yet proposed)  
Comments