<?xml version="1.0" encoding="UTF-8"?>
<cvrf:cvrfdoc xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:cvrf-common="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/common" xmlns:cvrf="http://docs.oasis-open.org/csaf/ns/csaf-cvrf/v1.2/cvrf">
    <cvrf:DocumentTitle>Improper access control in backup and restore features</cvrf:DocumentTitle>
    <cvrf:DocumentType>Fortinet PSIRT Advisories</cvrf:DocumentType>
    <cvrf:DocumentPublisher Type="Vendor">
        <cvrf:ContactDetails>
            Fortinet PSIRT Contact:
            Website: https://fortiguard.fortinet.com/faq/psirt-contact
        </cvrf:ContactDetails>
     </cvrf:DocumentPublisher>
    <cvrf:DocumentTracking>
        <cvrf:Identification>
            <cvrf:ID>FG-IR-23-103</cvrf:ID>
        </cvrf:Identification>
        <cvrf:Status>Final</cvrf:Status>
        <cvrf:Version>1</cvrf:Version>
        <cvrf:RevisionHistory>
            <cvrf:Revision>
                <cvrf:Number>1</cvrf:Number>
                <cvrf:Date>2024-03-12T00:00:00</cvrf:Date>
                <cvrf:Description>Current version</cvrf:Description>
        </cvrf:Revision>
       </cvrf:RevisionHistory>
        <cvrf:InitialReleaseDate>2024-03-12T00:00:00</cvrf:InitialReleaseDate>
        <cvrf:CurrentReleaseDate>2025-01-27T00:00:00</cvrf:CurrentReleaseDate>
    </cvrf:DocumentTracking>
    <cvrf:DocumentNotes>
        <cvrf:Note Title="Summary" Type="Summary" Ordinal="1">
            An improper access control vulnerability [`CWE-284]` in FortiWLM MEA for FortiManager may allow an unauthenticated remote attacker to execute arbitrary code or commands via specifically crafted requests.Note that FortiWLM MEA is not installed by default on FortiManager and can be disabled as a workaround.
        </cvrf:Note>
        <cvrf:Note Title="Description" Type="General" Ordinal="2">
            None
        </cvrf:Note>
        <cvrf:Note Title="Impact" Type="General" Ordinal="3">
            Execute unauthorized code or commands
        </cvrf:Note>
        <cvrf:Note Title="Solutions" Type="General" Ordinal="4">
            None
        </cvrf:Note>
    </cvrf:DocumentNotes>
    <cvrf:Acknowledgments>
        <cvrf:Acknowledgment>
            <cvrf:Description>Internally discovered and reported by Gwendal Guégniaud of Fortinet Product Security team.</cvrf:Description>
        </cvrf:Acknowledgment>
    </cvrf:Acknowledgments>
    <ProductTree>
        <Branch Name="Fortinet" Type="Vendor">
            <Branch Name="FortiManager" Type="Product Name">
                <Branch Name="7.4.0" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.4.0">FortiManager 7.4.0</FullProductName>
                </Branch>
                <Branch Name="7.2.3" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.2.3">FortiManager 7.2.3</FullProductName>
                </Branch>
                <Branch Name="7.2.2" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.2.2">FortiManager 7.2.2</FullProductName>
                </Branch>
                <Branch Name="7.2.1" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.2.1">FortiManager 7.2.1</FullProductName>
                </Branch>
                <Branch Name="7.2.0" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.2.0">FortiManager 7.2.0</FullProductName>
                </Branch>
                <Branch Name="7.0.10" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.0.10">FortiManager 7.0.10</FullProductName>
                </Branch>
                <Branch Name="7.0.9" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.0.9">FortiManager 7.0.9</FullProductName>
                </Branch>
                <Branch Name="7.0.8" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.0.8">FortiManager 7.0.8</FullProductName>
                </Branch>
                <Branch Name="7.0.7" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.0.7">FortiManager 7.0.7</FullProductName>
                </Branch>
                <Branch Name="7.0.6" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.0.6">FortiManager 7.0.6</FullProductName>
                </Branch>
                <Branch Name="7.0.5" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.0.5">FortiManager 7.0.5</FullProductName>
                </Branch>
                <Branch Name="7.0.4" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.0.4">FortiManager 7.0.4</FullProductName>
                </Branch>
                <Branch Name="7.0.3" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.0.3">FortiManager 7.0.3</FullProductName>
                </Branch>
                <Branch Name="7.0.2" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.0.2">FortiManager 7.0.2</FullProductName>
                </Branch>
                <Branch Name="7.0.1" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.0.1">FortiManager 7.0.1</FullProductName>
                </Branch>
                <Branch Name="7.0.0" Type="Product Version">
                    <FullProductName ProductID="FortiManager-7.0.0">FortiManager 7.0.0</FullProductName>
                </Branch>
                <Branch Name="6.4.13" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.4.13">FortiManager 6.4.13</FullProductName>
                </Branch>
                <Branch Name="6.4.12" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.4.12">FortiManager 6.4.12</FullProductName>
                </Branch>
                <Branch Name="6.4.11" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.4.11">FortiManager 6.4.11</FullProductName>
                </Branch>
                <Branch Name="6.4.10" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.4.10">FortiManager 6.4.10</FullProductName>
                </Branch>
                <Branch Name="6.4.9" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.4.9">FortiManager 6.4.9</FullProductName>
                </Branch>
                <Branch Name="6.4.8" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.4.8">FortiManager 6.4.8</FullProductName>
                </Branch>
                <Branch Name="6.4.7" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.4.7">FortiManager 6.4.7</FullProductName>
                </Branch>
                <Branch Name="6.4.6" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.4.6">FortiManager 6.4.6</FullProductName>
                </Branch>
                <Branch Name="6.4.5" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.4.5">FortiManager 6.4.5</FullProductName>
                </Branch>
                <Branch Name="6.4.4" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.4.4">FortiManager 6.4.4</FullProductName>
                </Branch>
                <Branch Name="6.4.3" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.4.3">FortiManager 6.4.3</FullProductName>
                </Branch>
                <Branch Name="6.4.2" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.4.2">FortiManager 6.4.2</FullProductName>
                </Branch>
                <Branch Name="6.4.1" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.4.1">FortiManager 6.4.1</FullProductName>
                </Branch>
                <Branch Name="6.4.0" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.4.0">FortiManager 6.4.0</FullProductName>
                </Branch>
                <Branch Name="6.2.13" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.2.13">FortiManager 6.2.13</FullProductName>
                </Branch>
                <Branch Name="6.2.12" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.2.12">FortiManager 6.2.12</FullProductName>
                </Branch>
                <Branch Name="6.2.11" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.2.11">FortiManager 6.2.11</FullProductName>
                </Branch>
                <Branch Name="6.2.10" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.2.10">FortiManager 6.2.10</FullProductName>
                </Branch>
                <Branch Name="6.2.9" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.2.9">FortiManager 6.2.9</FullProductName>
                </Branch>
                <Branch Name="6.2.8" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.2.8">FortiManager 6.2.8</FullProductName>
                </Branch>
                <Branch Name="6.2.7" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.2.7">FortiManager 6.2.7</FullProductName>
                </Branch>
                <Branch Name="6.2.6" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.2.6">FortiManager 6.2.6</FullProductName>
                </Branch>
                <Branch Name="6.2.5" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.2.5">FortiManager 6.2.5</FullProductName>
                </Branch>
                <Branch Name="6.2.4" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.2.4">FortiManager 6.2.4</FullProductName>
                </Branch>
                <Branch Name="6.2.3" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.2.3">FortiManager 6.2.3</FullProductName>
                </Branch>
                <Branch Name="6.2.2" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.2.2">FortiManager 6.2.2</FullProductName>
                </Branch>
                <Branch Name="6.2.1" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.2.1">FortiManager 6.2.1</FullProductName>
                </Branch>
                <Branch Name="6.2.0" Type="Product Version">
                    <FullProductName ProductID="FortiManager-6.2.0">FortiManager 6.2.0</FullProductName>
                </Branch>
            </Branch>
        </Branch>
    </ProductTree>
    <Vulnerability Ordinal="1">
        <Title>Improper access control in backup and restore features</Title>
        <cvrf:CVE>CVE-2023-36554</cvrf:CVE>
        <ProductStatuses>
            <Status Type="Known Affected">
                <ProductID>FortiManager-7.4.0</ProductID>
                <ProductID>FortiManager-7.2.3</ProductID>
                <ProductID>FortiManager-7.2.2</ProductID>
                <ProductID>FortiManager-7.2.1</ProductID>
                <ProductID>FortiManager-7.2.0</ProductID>
                <ProductID>FortiManager-7.0.10</ProductID>
                <ProductID>FortiManager-7.0.9</ProductID>
                <ProductID>FortiManager-7.0.8</ProductID>
                <ProductID>FortiManager-7.0.7</ProductID>
                <ProductID>FortiManager-7.0.6</ProductID>
                <ProductID>FortiManager-7.0.5</ProductID>
                <ProductID>FortiManager-7.0.4</ProductID>
                <ProductID>FortiManager-7.0.3</ProductID>
                <ProductID>FortiManager-7.0.2</ProductID>
                <ProductID>FortiManager-7.0.1</ProductID>
                <ProductID>FortiManager-7.0.0</ProductID>
                <ProductID>FortiManager-6.4.13</ProductID>
                <ProductID>FortiManager-6.4.12</ProductID>
                <ProductID>FortiManager-6.4.11</ProductID>
                <ProductID>FortiManager-6.4.10</ProductID>
                <ProductID>FortiManager-6.4.9</ProductID>
                <ProductID>FortiManager-6.4.8</ProductID>
                <ProductID>FortiManager-6.4.7</ProductID>
                <ProductID>FortiManager-6.4.6</ProductID>
                <ProductID>FortiManager-6.4.5</ProductID>
                <ProductID>FortiManager-6.4.4</ProductID>
                <ProductID>FortiManager-6.4.3</ProductID>
                <ProductID>FortiManager-6.4.2</ProductID>
                <ProductID>FortiManager-6.4.1</ProductID>
                <ProductID>FortiManager-6.4.0</ProductID>
                <ProductID>FortiManager-6.2.13</ProductID>
                <ProductID>FortiManager-6.2.12</ProductID>
                <ProductID>FortiManager-6.2.11</ProductID>
                <ProductID>FortiManager-6.2.10</ProductID>
                <ProductID>FortiManager-6.2.9</ProductID>
                <ProductID>FortiManager-6.2.8</ProductID>
                <ProductID>FortiManager-6.2.7</ProductID>
                <ProductID>FortiManager-6.2.6</ProductID>
                <ProductID>FortiManager-6.2.5</ProductID>
                <ProductID>FortiManager-6.2.4</ProductID>
                <ProductID>FortiManager-6.2.3</ProductID>
                <ProductID>FortiManager-6.2.2</ProductID>
                <ProductID>FortiManager-6.2.1</ProductID>
                <ProductID>FortiManager-6.2.0</ProductID>
            </Status>
        </ProductStatuses>
        <CVSSScoreSets>
            <ScoreSetV3>
                <BaseScoreV3>7.7</BaseScoreV3>
                <VectorV3>CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:P/RL:U/RC:C</VectorV3>
            </ScoreSetV3>
        </CVSSScoreSets>
        <References Type="Self">
            <Reference>
                <URL>https://fortiguard.fortinet.com/psirt/FG-IR-23-103</URL>
                <Description>Improper access control in backup and restore features</Description>
            </Reference>Reference>
        </References>
    </Vulnerability>
</cvrf:cvrfdoc>