Security Advisory

CVE-2022-22303

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-03-02 10:00:12
Last updated 2024-10-22 21:00:31
Assigner fortinet
State PUBLISHED

Description

An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiManager versions prior to 7.0.2, 6.4.7 and 6.2.9 may allow a low privileged authenticated user to gain access to the FortiGate users credentials via the config conflict file.