Security Advisory

CVE-2021-43067

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-12-08 11:22:39
Last updated 2024-10-25 13:42:16
Assigner fortinet
State PUBLISHED

Description

A exposure of sensitive information to an unauthorized actor in Fortinet FortiAuthenticator version 6.4.0, version 6.3.2 and below, version 6.2.1 and below, version 6.1.2 and below, version 6.0.7 to 6.0.1 allows attacker to duplicate a target LDAP user 2 factors authentication token via crafted HTTP requests.