CVE-2024-50562
Medium
Low
Medium
High
Critical
4.8
CVSS Score
Published: Jun 10, 2025
Last Modified: Jul 25, 2025
Vulnerability Description
An Insufficient Session Expiration vulnerability [CWE-613] in FortiOS SSL-VPN version 7.6.0, version 7.4.6 and below, version 7.2.10 and below, 7.0 all versions, 6.4 all versions may allow an attacker in possession of a cookie used to log in the SSL-VPN portal to log in again, although the session has expired or was logged out.
CVSS Metrics
Common Vulnerability Scoring System
Vector String:
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N
Attack Vector
N
Attack Complexity
H
Privileges Required
N
User Interaction
N
Scope
U
Confidentiality
L
Integrity
L
Availability
N
Known Affected Software
56 configuration(s) from 1 vendor(s)
fortios
Version:
7.0.0
CPE:
cpe:2.3:o:fortinet:fortios:7.0.0:*:*:*:*:*:*:*
fortios
Version:
6.4.1
CPE:
cpe:2.3:o:fortinet:fortios:6.4.1:*:*:*:*:*:*:*
fortios
Version:
7.2.3
CPE:
cpe:2.3:o:fortinet:fortios:7.2.3:*:*:*:*:*:*:*
fortios
Version:
7.0.15
CPE:
cpe:2.3:o:fortinet:fortios:7.0.15:*:*:*:*:*:*:*
fortios
Version:
7.0.9
CPE:
cpe:2.3:o:fortinet:fortios:7.0.9:*:*:*:*:*:*:*
fortios
Version:
6.4.3
CPE:
cpe:2.3:o:fortinet:fortios:6.4.3:*:*:*:*:*:*:*
fortios
Version:
6.4.5
CPE:
cpe:2.3:o:fortinet:fortios:6.4.5:*:*:*:*:*:*:*
fortios
Version:
6.4.10
CPE:
cpe:2.3:o:fortinet:fortios:6.4.10:*:*:*:*:*:*:*
fortios
Version:
6.4.0
CPE:
cpe:2.3:o:fortinet:fortios:6.4.0:*:*:*:*:*:*:*
fortios
Version:
7.0.10
CPE:
cpe:2.3:o:fortinet:fortios:7.0.10:*:*:*:*:*:*:*
fortios
Version:
7.4.1
CPE:
cpe:2.3:o:fortinet:fortios:7.4.1:*:*:*:*:*:*:*
fortios
Version:
7.2.2
CPE:
cpe:2.3:o:fortinet:fortios:7.2.2:*:*:*:*:*:*:*
fortios
Version:
6.4.2
CPE:
cpe:2.3:o:fortinet:fortios:6.4.2:*:*:*:*:*:*:*
fortios
Version:
7.2.6
CPE:
cpe:2.3:o:fortinet:fortios:7.2.6:*:*:*:*:*:*:*
fortios
Version:
7.2.10
CPE:
cpe:2.3:o:fortinet:fortios:7.2.10:*:*:*:*:*:*:*
fortios
Version:
6.4.8
CPE:
cpe:2.3:o:fortinet:fortios:6.4.8:*:*:*:*:*:*:*
fortios
Version:
7.6.0
CPE:
cpe:2.3:o:fortinet:fortios:7.6.0:*:*:*:*:*:*:*
fortios
Version:
6.4.9
CPE:
cpe:2.3:o:fortinet:fortios:6.4.9:*:*:*:*:*:*:*
fortios
Version:
6.4.7
CPE:
cpe:2.3:o:fortinet:fortios:6.4.7:*:*:*:*:*:*:*
fortios
Version:
7.0.16
CPE:
cpe:2.3:o:fortinet:fortios:7.0.16:*:*:*:*:*:*:*
fortios
Version:
6.4.13
CPE:
cpe:2.3:o:fortinet:fortios:6.4.13:*:*:*:*:*:*:*
fortios
Version:
7.0.12
CPE:
cpe:2.3:o:fortinet:fortios:7.0.12:*:*:*:*:*:*:*
fortios
Version:
7.0.1
CPE:
cpe:2.3:o:fortinet:fortios:7.0.1:*:*:*:*:*:*:*
fortios
Version:
6.4.14
CPE:
cpe:2.3:o:fortinet:fortios:6.4.14:*:*:*:*:*:*:*
fortios
Version:
6.4.16
CPE:
cpe:2.3:o:fortinet:fortios:6.4.16:*:*:*:*:*:*:*
fortios
Version:
7.2.7
CPE:
cpe:2.3:o:fortinet:fortios:7.2.7:*:*:*:*:*:*:*
fortios
Version:
6.4.6
CPE:
cpe:2.3:o:fortinet:fortios:6.4.6:*:*:*:*:*:*:*
fortios
Version:
6.4.15
CPE:
cpe:2.3:o:fortinet:fortios:6.4.15:*:*:*:*:*:*:*
fortios
Version:
7.0.11
CPE:
cpe:2.3:o:fortinet:fortios:7.0.11:*:*:*:*:*:*:*
fortios
Version:
7.4.3
CPE:
cpe:2.3:o:fortinet:fortios:7.4.3:*:*:*:*:*:*:*
fortios
Version:
7.0.4
CPE:
cpe:2.3:o:fortinet:fortios:7.0.4:*:*:*:*:*:*:*
fortios
Version:
7.2.1
CPE:
cpe:2.3:o:fortinet:fortios:7.2.1:*:*:*:*:*:*:*
fortios
Version:
7.0.6
CPE:
cpe:2.3:o:fortinet:fortios:7.0.6:*:*:*:*:*:*:*
fortios
Version:
7.0.3
CPE:
cpe:2.3:o:fortinet:fortios:7.0.3:*:*:*:*:*:*:*
fortios
Version:
7.2.9
CPE:
cpe:2.3:o:fortinet:fortios:7.2.9:*:*:*:*:*:*:*
fortios
Version:
6.4.11
CPE:
cpe:2.3:o:fortinet:fortios:6.4.11:*:*:*:*:*:*:*
fortisase
Version:
24.4.60
CPE:
cpe:2.3:a:fortinet:fortisase:24.4.60:*:*:*:-:*:*:*
fortios
Version:
7.0.7
CPE:
cpe:2.3:o:fortinet:fortios:7.0.7:*:*:*:*:*:*:*
fortios
Version:
7.0.17
CPE:
cpe:2.3:o:fortinet:fortios:7.0.17:*:*:*:*:*:*:*
fortios
Version:
7.4.4
CPE:
cpe:2.3:o:fortinet:fortios:7.4.4:*:*:*:*:*:*:*
fortios
Version:
7.4.0
CPE:
cpe:2.3:o:fortinet:fortios:7.4.0:*:*:*:*:*:*:*
fortios
Version:
7.0.2
CPE:
cpe:2.3:o:fortinet:fortios:7.0.2:*:*:*:*:*:*:*
fortios
Version:
6.4.12
CPE:
cpe:2.3:o:fortinet:fortios:6.4.12:*:*:*:*:*:*:*
fortios
Version:
7.2.5
CPE:
cpe:2.3:o:fortinet:fortios:7.2.5:*:*:*:*:*:*:*
fortios
Version:
7.2.0
CPE:
cpe:2.3:o:fortinet:fortios:7.2.0:*:*:*:*:*:*:*
fortios
Version:
7.2.4
CPE:
cpe:2.3:o:fortinet:fortios:7.2.4:*:*:*:*:*:*:*
fortios
Version:
6.4.4
CPE:
cpe:2.3:o:fortinet:fortios:6.4.4:*:*:*:*:*:*:*
fortios
Version:
7.4.7
CPE:
cpe:2.3:o:fortinet:fortios:7.4.7:*:*:*:*:*:*:*
fortios
Version:
7.4.5
CPE:
cpe:2.3:o:fortinet:fortios:7.4.5:*:*:*:*:*:*:*
fortios
Version:
7.4.2
CPE:
cpe:2.3:o:fortinet:fortios:7.4.2:*:*:*:*:*:*:*
fortios
Version:
7.2.8
CPE:
cpe:2.3:o:fortinet:fortios:7.2.8:*:*:*:*:*:*:*
fortios
Version:
7.0.8
CPE:
cpe:2.3:o:fortinet:fortios:7.0.8:*:*:*:*:*:*:*
fortios
Version:
7.0.14
CPE:
cpe:2.3:o:fortinet:fortios:7.0.14:*:*:*:*:*:*:*
fortios
Version:
7.0.5
CPE:
cpe:2.3:o:fortinet:fortios:7.0.5:*:*:*:*:*:*:*
fortios
Version:
7.4.6
CPE:
cpe:2.3:o:fortinet:fortios:7.4.6:*:*:*:*:*:*:*
fortios
Version:
7.0.13
CPE:
cpe:2.3:o:fortinet:fortios:7.0.13:*:*:*:*:*:*:*
This vulnerability affects 56 software configuration(s). Ensure you patch all affected systems.
References & Resources
Severity Details
4.8
out of 10.0
Medium
Key Information
- Published Date
- June 10, 2025
