A allocation of resources without limits or throttling in Fortinet FortiSIEM 5.3 all versions, 5.4 all versions, 6.x all versions, 7.0 all versions, and 7.1.0 through 7.1.5 may allow an attacker to deny valid TLS traffic via consuming all allotted connections.
History

Wed, 16 Jul 2025 13:30:00 +0000

Type Values Removed Values Added
First Time appeared Fortinet
Fortinet fortisiem
CPEs cpe:2.3:a:fortinet:fortisiem:*:*:*:*:*:*:*:*
cpe:2.3:a:fortinet:fortisiem:5.4.0:*:*:*:*:*:*:*
Vendors & Products Fortinet
Fortinet fortisiem

Tue, 14 Jan 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 14 Jan 2025 14:15:00 +0000

Type Values Removed Values Added
Description A allocation of resources without limits or throttling in Fortinet FortiSIEM 5.3 all versions, 5.4 all versions, 6.x all versions, 7.0 all versions, and 7.1.0 through 7.1.5 may allow an attacker to deny valid TLS traffic via consuming all allotted connections.
Weaknesses CWE-770
References
Metrics cvssV3_1

{'score': 6.9, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:P/RL:W/RC:C'}


cve-icon MITRE

Status: PUBLISHED

Assigner: fortinet

Published:

Updated: 2025-02-18T21:37:18.364Z

Reserved: 2024-09-11T12:14:59.204Z

Link: CVE-2024-46667

cve-icon Vulnrichment

Updated: 2025-01-14T14:28:07.561Z

cve-icon NVD

Status : Analyzed

Published: 2025-01-14T14:15:31.797

Modified: 2025-07-16T13:16:19.890

Link: CVE-2024-46667

cve-icon Redhat

No data.