---
cve: "CVE-2023-46715"
severity: "MEDIUM"
cvss: 4.7
epss: "95%"
vendor: "Fortinet"
kev: false
exploited: false
published: "2025-01-14 14:15:27"
tags: [cve, security, medium]
source: tsecurity.de CVE-Dossier
exported: "2026-09-18T02:14:54+02:00"
---

# CVE-2023-46715

> 4.7 MEDIUM

## Beschreibung

An origin validation error [CWE-346] vulnerability in Fortinet FortiOS  IPSec VPN version 7.4.0 through 7.4.1 and version 7.2.6 and below allows an authenticated IPSec VPN user with dynamic IP addressing to send (but not receive) packets spoofing the IP of another user via crafted network packets.

## CVSS-Vektor

```
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N/E:P/RL:X/RC:C
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Netzwerk | bad |
| AC Komplexität | Gering | bad |
| PR Privilegien | Gering | warn |
| UI Interaktion | Keine | bad |
| S Scope | Verändert | bad |
| C Vertraulichkeit | Keine | good |
| I Integrität | Gering | warn |
| A Verfügbarkeit | Keine | good |

## Schwachstellen-Klasse

- **CWE-346** — Origin Validation Error
  The product does not properly verify that the source of data or communication is valid.

## Angriffsmuster (CAPEC)

- [CAPEC-21 — Exploitation of Trusted Identifiers](https://capec.mitre.org/data/definitions/21.html) _(Severity: High)_
- [CAPEC-111 — JSON Hijacking (aka JavaScript Hijacking)](https://capec.mitre.org/data/definitions/111.html) _(Severity: High)_
- [CAPEC-141 — Cache Poisoning](https://capec.mitre.org/data/definitions/141.html) _(Severity: High)_
- [CAPEC-142 — DNS Cache Poisoning](https://capec.mitre.org/data/definitions/142.html) _(Severity: High)_
- [CAPEC-160 — Exploit Script-Based APIs](https://capec.mitre.org/data/definitions/160.html) _(Severity: Medium)_
- [CAPEC-384 — Application API Message Manipulation via Man-in-the-Middle](https://capec.mitre.org/data/definitions/384.html) _(Severity: Low)_
- [CAPEC-385 — Transaction or Event Tampering via Application API Manipulation](https://capec.mitre.org/data/definitions/385.html) _(Severity: Medium)_
- [CAPEC-386 — Application API Navigation Remapping](https://capec.mitre.org/data/definitions/386.html) _(Severity: Medium)_

## ATT&CK-Techniken

- [T1134 — Access Token Manipulation](https://attack.mitre.org/techniques/T1134/)
- [T1528 — Steal Application Access Token](https://attack.mitre.org/techniques/T1528/)
- [T1539 — Steal Web Session Cookie](https://attack.mitre.org/techniques/T1539/)
- [T1557.002 — Adversary-in-the-Middle: ARP Cache Poisoning](https://attack.mitre.org/techniques/T1557/002/)
- [T1584.002 — Compromise Infrastructure: DNS Server](https://attack.mitre.org/techniques/T1584/002/)

## Referenzen

- <https://fortiguard.com/psirt/FG-IR-23-407>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2023-46715) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
