Security Advisory
CVE-2023-40720
7.1
HIGH
Vulnerability Description
An authorization bypass through user-controlled key vulnerability [CWE-639] in FortiVoiceEntreprise version 7.0.0 through 7.0.1 and before 6.4.8 allows an authenticated attacker to read the SIP configuration of other users via crafted HTTP or HTTPS requests.
Published Date
May 14, 2024
Official Source
NIST NVD Advisory