CVSSv3 Score: 6.2
An improper access control vulnerability [CWE-284] in FortiPortal API endpoints may allow a remote privileged attacker with organization user role to obtain sensitive network configuration data via crafted HTTP requests.
Revised on 2026-06-09 00:00:00





