Description
A cleartext storage of sensitive information in GUI in FortiADC versions 5.4.3 and below, 6.0.0 and below may allow a remote authenticated attacker to retrieve some sensitive information such as users LDAP passwords and RADIUS shared secret by deobfuscating the passwords entry fields.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-7906 | A cleartext storage of sensitive information in GUI in FortiADC versions 5.4.3 and below, 6.0.0 and below may allow a remote authenticated attacker to retrieve some sensitive information such as users LDAP passwords and RADIUS shared secret by deobfuscating the passwords entry fields. |
References
| Link | Providers |
|---|---|
| https://fortiguard.com/advisory/FG-IR-20-044 |
|
History
Fri, 25 Oct 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-10-25T13:43:30.629Z
Reserved: 2020-07-24T00:00:00.000Z
Link: CVE-2020-15935
Updated: 2024-08-04T13:30:23.222Z
Status : Modified
Published: 2021-11-02T19:15:07.523
Modified: 2024-11-21T05:06:29.250
Link: CVE-2020-15935
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD