Beveiligingsadvies

CVE-2022-41327

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-06-13 08:41:41
Laatst bijgewerkt 2024-10-23 14:27:14
Toegewezen door fortinet
CVSS-score 7.6
Status PUBLISHED

Beschrijving

A cleartext transmission of sensitive information vulnerability [CWE-319] in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.8, FortiProxy version 7.2.0 through 7.2.1 and 7.0.0 through 7.0.8 allows an authenticated attacker with readonly superadmin privileges to intercept traffic in order to obtain other adminstrators cookies via diagnose CLI commands.