Description
An information disclosure vulnerability [CWE-200] in FortiAnalyzerVM and FortiManagerVM versions 7.0.0 and 6.4.6 and below may allow an authenticated attacker to read the FortiCloud credentials which were used to activate the trial license in cleartext.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-22791 | An information disclosure vulnerability [CWE-200] in FortiAnalyzerVM and FortiManagerVM versions 7.0.0 and 6.4.6 and below may allow an authenticated attacker to read the FortiCloud credentials which were used to activate the trial license in cleartext. |
References
| Link | Providers |
|---|---|
| https://fortiguard.com/advisory/FG-IR-21-112 |
|
History
Fri, 25 Oct 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-10-25T13:49:27.613Z
Reserved: 2021-07-06T00:00:00.000Z
Link: CVE-2021-36170
Updated: 2024-08-04T00:47:43.941Z
Status : Modified
Published: 2021-10-06T10:15:07.873
Modified: 2024-11-21T06:13:14.913
Link: CVE-2021-36170
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD