Security Advisory

CVE-2022-41331

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-04-11 16:06:05
Last updated 2024-10-23 14:29:35
Assigner fortinet
State PUBLISHED

Description

A missing authentication for critical function vulnerability [CWE-306] in FortiPresence infrastructure server before version 1.2.1 allows a remote, unauthenticated attacker to access the Redis and MongoDB instances via crafted authentication requests.