CVE-2022-41331

Publication date

2023-04-11 16:06:05

Family

fortinet

State

PUBLISHED

Description

A missing authentication for critical function vulnerability [CWE-306] in FortiPresence infrastructure server before version 1.2.1 allows a remote, unauthenticated attacker to access the Redis and MongoDB instances via crafted authentication requests.