Security Advisory

CVE-2023-40720

7.1
HIGH

Vulnerability Description

An authorization bypass through user-controlled key vulnerability [CWE-639] in FortiVoiceEntreprise version 7.0.0 through 7.0.1 and before 6.4.8 allows an authenticated attacker to read the SIP configuration of other users via crafted HTTP or HTTPS requests.
Published Date May 14, 2024
Official Source NIST NVD Advisory