Vulnerability Details CVE-2023-44248
An improper access control vulnerability [CWE-284] in FortiEDRCollectorWindows version 5.2.0.4549 and below, 5.0.3.1007 and below, 4.0 all may allow a local attacker to prevent the collector service to start in the next system reboot by tampering with some registry keys of the service.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 10.8%
CVSS Severity
CVSS v3 Score 4.4
Products affected by CVE-2023-44248
-
cpe:2.3:a:fortinet:fortiedr:*
-
cpe:2.3:a:fortinet:fortiedr:4.0.0
-
cpe:2.3:a:fortinet:fortiedr:5.0.3