Home Fortinet CVE-2024-45331
Back to Fortinet

CVE-2024-45331

FortiAnalyzer - FortiAnalyzer Core

Fortinet CVSS 7.3 Updated March 16, 2026

Executive Risk Summary

"A privilege escalation vulnerability exists in Fortinet FortiAnalyzer versions 7.4.0 through 7.4.3, 7.2.0 through 7.2.5, 7.0.0 through 7.0.13, 6.4.0 through 6.4.15, allowing attackers to escalate privileges via specific shell commands. This vulnerability can be exploited to gain elevated access to the system, potentially leading to unauthorized data access or system compromise."

Operational Audit Arsenal

Target Type Firmware Image
Target Asset FortiAnalyzer Firmware
Standard Path Global Firmware

Manual Verification Required

This is a non-Windows asset (Fortinet). Use the target asset details above to verify your version against vendor advisories.

Patch Impact Forecast

Reboot Required Likely

Moderate

Internal Work Notes

FortiAnalyzer privilege escalation vulnerability (CVE-2024-45331) - Upgrade to a patched version to prevent unauthorized access and potential system compromise.

Technical Intelligence & Operational Utilities • Delivered Weekly

Intelligence Sources

Scope of Impact

Fortinet FortimanagerFortinet Fortimanager CloudFortinet Fortianalyzer CloudFortinet Fortianalyzer

Original NVD Description

"A incorrect privilege assignment in Fortinet FortiAnalyzer versions 7.4.0 through 7.4.3, 7.2.0 through 7.2.5, 7.0.0 through 7.0.13, 6.4.0 through 6.4.15, FortiManager versions 7.4.0 through 7.4.2, 7.2.0 through 7.2.5, 7.0.0 through 7.0.13, 6.4.0 through 6.4.15, FortiAnalyzer Cloud versions 7.4.1 through 7.4.2, 7.2.1 through 7.2.6, 7.0.1 through 7.0.13, 6.4.1 through 6.4.7 allows attacker to escalate privilege via specific shell commands"

Related Fortinet Threats

Data compiled from NVD, MSRC, and CISA KEV Catalog. Intelligence synthesized via AI. Scripts provided for diagnostic purposes under MIT License.