{
    "document": {
        "category": "csaf_security_advisory",
        "csaf_version": "2.0",
        "distribution": {
            "tlp": {
                "label": "WHITE"
            }
        },
        "lang": "nl",
        "notes": [
            {
                "category": "legal_disclaimer",
                "text": "The Netherlands Cyber Security Center (henceforth: NCSC-NL) maintains this page to enhance access to its information and security advisories. The use of this security advisory is subject to the following terms and conditions:\n\n    NCSC-NL makes every reasonable effort to ensure that the content of this page is kept up to date, and that it is accurate and complete. Nevertheless, NCSC-NL cannot entirely rule out the possibility of errors, and therefore cannot give any warranty in respect of its completeness, accuracy or continuous keeping up-to-date. The information contained in this security advisory is intended solely for the purpose of providing general information to professional users. No rights can be derived from the information provided therein.\n\n    NCSC-NL and the Kingdom of the Netherlands assume no legal liability or responsibility for any damage resulting from either the use or inability of use of this security advisory. This includes damage resulting from the inaccuracy of incompleteness of the information contained in the advisory.\n    This security advisory is subject to Dutch law. All disputes related to or arising from the use of this advisory will be submitted to the competent court in The Hague. This choice of means also applies to the court in summary proceedings."
            },
            {
                "category": "description",
                "text": "Fortinet heeft een aantal kwetsbaarheden verholpen in FortiAIOps,  Fortinet FortiPortal, FortiWeb en Fortinet FortiExtender.\n\n",
                "title": "Feiten"
            },
            {
                "category": "description",
                "text": "De meest serieuze kwetsbaarheden zijn CVE-2024-23663, CVE-2024-27782 en CVE-2024-27784. Welke in Fortinet FortiExtender en FortiAIOps zitten.\n\nFortinet FortiExtender:\nFortinet ForiExtender is een apparaat welke internet verbinding via 4g en 5g ondersteund. Een kwaadwillende kan de CVE-2024-23663 kwetsbaarheid die in Fortinet FortiExtender misbruiken om via HTTP verzoeken verhoogde rechten te krijgen. \n\nFortiAIOps (versie 2.0.0):\nDe andere twee kwetsbaarheden, CVE-2024-27784 en CVE-2024-27782, zitten in  FortiAIOps versie 2.0.0. FortiAIOps is een platform welke netwerk verkeer ondersteund door artificiële intelligentie en machine learning. Dit doet dit door diverse data stromen van het netwerk te integreren.\nEen kwaadwillende kan de CVE-2024-27782 kwetsbaarheid misbruiken om met gestolen sessie tokens ongeautoriseerde verzoeken in te dienen. Een kwaadwillende kan de CVE-2024-27784 kwetsbaarheid misbruiken, mits hij geauthenticeerd is tot FortiAIOps, om gevoelige data in te zien van een API endpoint of log files.\n",
                "title": "Interpretaties"
            },
            {
                "category": "description",
                "text": "Fortinet heeft updates uitgebracht om de kwetsbaarheden te verhelpen. Zie bijgevoegde referenties voor meer informatie.",
                "title": "Oplossingen"
            },
            {
                "category": "general",
                "text": "medium",
                "title": "Kans"
            },
            {
                "category": "general",
                "text": "high",
                "title": "Schade"
            },
            {
                "category": "general",
                "text": "Improper Neutralization of Formula Elements in a CSV File",
                "title": "CWE-1236"
            },
            {
                "category": "general",
                "text": "Improper Access Control",
                "title": "CWE-284"
            },
            {
                "category": "general",
                "text": "Improper Certificate Validation",
                "title": "CWE-295"
            },
            {
                "category": "general",
                "text": "Insertion of Sensitive Information into Log File",
                "title": "CWE-532"
            },
            {
                "category": "general",
                "text": "Insufficient Session Expiration",
                "title": "CWE-613"
            },
            {
                "category": "general",
                "text": "Authorization Bypass Through User-Controlled Key",
                "title": "CWE-639"
            }
        ],
        "publisher": {
            "category": "coordinator",
            "contact_details": "cert@ncsc.nl",
            "name": "Nationaal Cyber Security Centrum",
            "namespace": "https://www.ncsc.nl/"
        },
        "references": [
            {
                "category": "external",
                "summary": "Source - fortinet",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-22-326"
            },
            {
                "category": "external",
                "summary": "Source - fortinet",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-23-459"
            },
            {
                "category": "external",
                "summary": "Source - fortinet",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-24-011"
            },
            {
                "category": "external",
                "summary": "Source - fortinet",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-24-069"
            },
            {
                "category": "external",
                "summary": "Source - fortinet",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-24-072"
            },
            {
                "category": "external",
                "summary": "Source - fortinet",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-24-073"
            },
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.com/psirt/FG-IR-23-459"
            },
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-22-326"
            },
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-24-011"
            },
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-24-069"
            },
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-24-072"
            },
            {
                "category": "external",
                "summary": "Reference - cveprojectv5; nvd",
                "url": "https://fortiguard.fortinet.com/psirt/FG-IR-24-073"
            }
        ],
        "title": "Kwetsbaarheden verholpen in Fortinet ",
        "tracking": {
            "current_release_date": "2024-07-10T08:27:35.622919Z",
            "id": "NCSC-2024-0287",
            "initial_release_date": "2024-07-10T08:27:35.622919Z",
            "revision_history": [
                {
                    "date": "2024-07-10T08:27:35.622919Z",
                    "number": "0",
                    "summary": "Initiele versie"
                }
            ],
            "status": "final",
            "version": "1.0.0"
        }
    },
    "product_tree": {
        "branches": [
            {
                "branches": [
                    {
                        "category": "product_name",
                        "name": "fortiaiops",
                        "product": {
                            "name": "fortiaiops",
                            "product_id": "CSAFPID-1498732",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiaiops:2.0.0:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiextender",
                        "product": {
                            "name": "fortiextender",
                            "product_id": "CSAFPID-548737",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiextender:7.0.0:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiextender",
                        "product": {
                            "name": "fortiextender",
                            "product_id": "CSAFPID-548736",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiextender:7.0.1:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiextender",
                        "product": {
                            "name": "fortiextender",
                            "product_id": "CSAFPID-548735",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiextender:7.0.2:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiextender",
                        "product": {
                            "name": "fortiextender",
                            "product_id": "CSAFPID-548733",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiextender:7.0.3:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiextender",
                        "product": {
                            "name": "fortiextender",
                            "product_id": "CSAFPID-1498731",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiextender:7.0.4:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiextender",
                        "product": {
                            "name": "fortiextender",
                            "product_id": "CSAFPID-1498729",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiextender:7.2.0:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiextender",
                        "product": {
                            "name": "fortiextender",
                            "product_id": "CSAFPID-1498790",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiextender:7.2.1:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiextender",
                        "product": {
                            "name": "fortiextender",
                            "product_id": "CSAFPID-1498789",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiextender:7.2.2:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiextender",
                        "product": {
                            "name": "fortiextender",
                            "product_id": "CSAFPID-1498788",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiextender:7.2.3:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiextender",
                        "product": {
                            "name": "fortiextender",
                            "product_id": "CSAFPID-1498730",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiextender:7.2.4:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiextender",
                        "product": {
                            "name": "fortiextender",
                            "product_id": "CSAFPID-1498727",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiextender:7.4.0:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiextender",
                        "product": {
                            "name": "fortiextender",
                            "product_id": "CSAFPID-1498787",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiextender:7.4.1:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiextender",
                        "product": {
                            "name": "fortiextender",
                            "product_id": "CSAFPID-1498728",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiextender:7.4.2:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiportal",
                        "product": {
                            "name": "fortiportal",
                            "product_id": "CSAFPID-1476787",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiportal:7.0:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiportal",
                        "product": {
                            "name": "fortiportal",
                            "product_id": "CSAFPID-80581",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiportal:7.0.0:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiportal",
                        "product": {
                            "name": "fortiportal",
                            "product_id": "CSAFPID-80582",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiportal:7.0.1:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiportal",
                        "product": {
                            "name": "fortiportal",
                            "product_id": "CSAFPID-80580",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiportal:7.0.2:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiportal",
                        "product": {
                            "name": "fortiportal",
                            "product_id": "CSAFPID-910573",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiportal:7.0.3:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiportal",
                        "product": {
                            "name": "fortiportal",
                            "product_id": "CSAFPID-910572",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiportal:7.0.4:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiportal",
                        "product": {
                            "name": "fortiportal",
                            "product_id": "CSAFPID-910571",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiportal:7.0.5:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiportal",
                        "product": {
                            "name": "fortiportal",
                            "product_id": "CSAFPID-910570",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiportal:7.0.6:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiportal",
                        "product": {
                            "name": "fortiportal",
                            "product_id": "CSAFPID-1476788",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiportal:7.1:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiportal",
                        "product": {
                            "name": "fortiportal",
                            "product_id": "CSAFPID-1476789",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiportal:7.2:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiportal",
                        "product": {
                            "name": "fortiportal",
                            "product_id": "CSAFPID-749726",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiportal:7.2.0:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94517",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.0:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94547",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.1:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94546",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.10:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94464",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.11:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94431",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.12:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94483",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.13:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94497",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.14:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94499",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.15:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94472",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.16:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94432",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.17:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-110145",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.18:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-124071",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.19:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94453",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.2:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-260593",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.20:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-350300",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.21:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-377287",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.22:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-548714",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.23:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94460",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.3:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94532",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.4:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-110142",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.5:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94463",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.6:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-110141",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.7:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94484",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.8:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94479",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.3.9:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94470",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.4.0:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-94496",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.4.1:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-110132",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.4.2:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-243312",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:6.4.3:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-165615",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:7.0:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-110114",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:7.0.0:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-124070",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:7.0.1:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-956835",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:7.0.10:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-260592",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:7.0.2:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-350301",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:7.0.3:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-470994",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:7.0.4:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-548713",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:7.0.5:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-548712",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:7.0.6:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-956829",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:7.0.7:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-956828",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:7.0.8:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-956836",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:7.0.9:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-548711",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:7.2.0:*:*:*:*:*:*:*"
                            }
                        }
                    },
                    {
                        "category": "product_name",
                        "name": "fortiweb",
                        "product": {
                            "name": "fortiweb",
                            "product_id": "CSAFPID-548710",
                            "product_identification_helper": {
                                "cpe": "cpe:2.3:a:fortinet:fortiweb:7.2.1:*:*:*:*:*:*:*"
                            }
                        }
                    }
                ],
                "category": "vendor",
                "name": "fortinet"
            }
        ]
    },
    "vulnerabilities": [
        {
            "cve": "CVE-2024-21759",
            "cwe": {
                "id": "CWE-639",
                "name": "Authorization Bypass Through User-Controlled Key"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Authorization Bypass Through User-Controlled Key",
                    "title": "CWE-639"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-749726",
                    "CSAFPID-80581",
                    "CSAFPID-910570",
                    "CSAFPID-80580",
                    "CSAFPID-910571",
                    "CSAFPID-80582",
                    "CSAFPID-910572",
                    "CSAFPID-910573"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-21759",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-21759.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N/E:P/RL:O/RC:C",
                        "baseScore": 4.3,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-749726",
                        "CSAFPID-80581",
                        "CSAFPID-910570",
                        "CSAFPID-80580",
                        "CSAFPID-910571",
                        "CSAFPID-80582",
                        "CSAFPID-910572",
                        "CSAFPID-910573"
                    ]
                }
            ],
            "title": "CVE-2024-21759"
        },
        {
            "cve": "CVE-2024-33509",
            "cwe": {
                "id": "CWE-295",
                "name": "Improper Certificate Validation"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Improper Certificate Validation",
                    "title": "CWE-295"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-548711",
                    "CSAFPID-548710",
                    "CSAFPID-110114",
                    "CSAFPID-956835",
                    "CSAFPID-94470",
                    "CSAFPID-243312",
                    "CSAFPID-94517",
                    "CSAFPID-548714",
                    "CSAFPID-956836",
                    "CSAFPID-956828",
                    "CSAFPID-956829",
                    "CSAFPID-548712",
                    "CSAFPID-548713",
                    "CSAFPID-470994",
                    "CSAFPID-350301",
                    "CSAFPID-260592",
                    "CSAFPID-124070",
                    "CSAFPID-110132",
                    "CSAFPID-94496",
                    "CSAFPID-377287",
                    "CSAFPID-350300",
                    "CSAFPID-260593",
                    "CSAFPID-124071",
                    "CSAFPID-110145",
                    "CSAFPID-94432",
                    "CSAFPID-94472",
                    "CSAFPID-94499",
                    "CSAFPID-94497",
                    "CSAFPID-94483",
                    "CSAFPID-94431",
                    "CSAFPID-94464",
                    "CSAFPID-94546",
                    "CSAFPID-94479",
                    "CSAFPID-94484",
                    "CSAFPID-110141",
                    "CSAFPID-94463",
                    "CSAFPID-110142",
                    "CSAFPID-94532",
                    "CSAFPID-94460",
                    "CSAFPID-94453",
                    "CSAFPID-94547"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-33509",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-33509.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N/E:U/RL:O/RC:R",
                        "baseScore": 4.8,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-548711",
                        "CSAFPID-548710",
                        "CSAFPID-110114",
                        "CSAFPID-956835",
                        "CSAFPID-94470",
                        "CSAFPID-243312",
                        "CSAFPID-94517",
                        "CSAFPID-548714",
                        "CSAFPID-956836",
                        "CSAFPID-956828",
                        "CSAFPID-956829",
                        "CSAFPID-548712",
                        "CSAFPID-548713",
                        "CSAFPID-470994",
                        "CSAFPID-350301",
                        "CSAFPID-260592",
                        "CSAFPID-124070",
                        "CSAFPID-110132",
                        "CSAFPID-94496",
                        "CSAFPID-377287",
                        "CSAFPID-350300",
                        "CSAFPID-260593",
                        "CSAFPID-124071",
                        "CSAFPID-110145",
                        "CSAFPID-94432",
                        "CSAFPID-94472",
                        "CSAFPID-94499",
                        "CSAFPID-94497",
                        "CSAFPID-94483",
                        "CSAFPID-94431",
                        "CSAFPID-94464",
                        "CSAFPID-94546",
                        "CSAFPID-94479",
                        "CSAFPID-94484",
                        "CSAFPID-110141",
                        "CSAFPID-94463",
                        "CSAFPID-110142",
                        "CSAFPID-94532",
                        "CSAFPID-94460",
                        "CSAFPID-94453",
                        "CSAFPID-94547"
                    ]
                }
            ],
            "title": "CVE-2024-33509"
        },
        {
            "cve": "CVE-2024-27782",
            "cwe": {
                "id": "CWE-613",
                "name": "Insufficient Session Expiration"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Insufficient Session Expiration",
                    "title": "CWE-613"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-1498732"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-27782",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-27782.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:P/RL:U/RC:C",
                        "baseScore": 8.1,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1498732"
                    ]
                }
            ],
            "title": "CVE-2024-27782"
        },
        {
            "cve": "CVE-2024-27784",
            "cwe": {
                "id": "CWE-532",
                "name": "Insertion of Sensitive Information into Log File"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Insertion of Sensitive Information into Log File",
                    "title": "CWE-532"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-1498732"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-27784",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-27784.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:U/RC:C",
                        "baseScore": 8.8,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1498732"
                    ]
                }
            ],
            "title": "CVE-2024-27784"
        },
        {
            "cve": "CVE-2024-23663",
            "cwe": {
                "id": "CWE-284",
                "name": "Improper Access Control"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Improper Access Control",
                    "title": "CWE-284"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-1498727",
                    "CSAFPID-1498728",
                    "CSAFPID-1498729",
                    "CSAFPID-1498730",
                    "CSAFPID-548737",
                    "CSAFPID-1498731",
                    "CSAFPID-1498787",
                    "CSAFPID-1498788",
                    "CSAFPID-1498789",
                    "CSAFPID-1498790",
                    "CSAFPID-548733",
                    "CSAFPID-548735",
                    "CSAFPID-548736"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-23663",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-23663.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:X/RC:X",
                        "baseScore": 8.8,
                        "baseSeverity": "HIGH"
                    },
                    "products": [
                        "CSAFPID-1498727",
                        "CSAFPID-1498728",
                        "CSAFPID-1498729",
                        "CSAFPID-1498730",
                        "CSAFPID-548737",
                        "CSAFPID-1498731",
                        "CSAFPID-1498787",
                        "CSAFPID-1498788",
                        "CSAFPID-1498789",
                        "CSAFPID-1498790",
                        "CSAFPID-548733",
                        "CSAFPID-548735",
                        "CSAFPID-548736"
                    ]
                }
            ],
            "title": "CVE-2024-23663"
        },
        {
            "cve": "CVE-2024-27785",
            "cwe": {
                "id": "CWE-1236",
                "name": "Improper Neutralization of Formula Elements in a CSV File"
            },
            "notes": [
                {
                    "category": "other",
                    "text": "Improper Neutralization of Formula Elements in a CSV File",
                    "title": "CWE-1236"
                }
            ],
            "product_status": {
                "known_affected": [
                    "CSAFPID-1498732"
                ]
            },
            "references": [
                {
                    "category": "self",
                    "summary": "CVE-2024-27785",
                    "url": "https://api.ncsc.nl/velma/v1/vulnerabilities/2024/CVE-2024-27785.json"
                }
            ],
            "scores": [
                {
                    "cvss_v3": {
                        "version": "3.1",
                        "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:N/I:L/A:L/E:P/RL:U/RC:C",
                        "baseScore": 5.4,
                        "baseSeverity": "MEDIUM"
                    },
                    "products": [
                        "CSAFPID-1498732"
                    ]
                }
            ],
            "title": "CVE-2024-27785"
        }
    ]
}