Description
An allocation of resources without limits or throttling vulnerability [CWE-770] in FortiPAM 1.0 all versions allows an authenticated attacker to perform a denial of service attack via sending crafted HTTP or HTTPS requests in a high frequency.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
Please upgrade to FortiPAM version 1.1.0 or above
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-41787 | An allocation of resources without limits or throttling vulnerability [CWE-770] in FortiPAM 1.0 all versions allows an authenticated attacker to perform a denial of service attack via sending crafted HTTP or HTTPS requests in a high frequency. |
References
| Link | Providers |
|---|---|
| https://fortiguard.com/psirt/FG-IR-23-226 |
|
History
Tue, 17 Jun 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2025-06-17T20:59:11.662Z
Reserved: 2023-07-11T08:16:54.092Z
Link: CVE-2023-37934
Updated: 2024-08-02T17:23:27.765Z
Status : Modified
Published: 2024-01-10T18:15:45.823
Modified: 2024-11-21T08:12:29.930
Link: CVE-2023-37934
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD