Description
An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiManager versions prior to 7.0.2, 6.4.7 and 6.2.9 may allow a low privileged authenticated user to gain access to the FortiGate users credentials via the config conflict file.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-27449 | An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiManager versions prior to 7.0.2, 6.4.7 and 6.2.9 may allow a low privileged authenticated user to gain access to the FortiGate users credentials via the config conflict file. |
References
| Link | Providers |
|---|---|
| https://fortiguard.com/psirt/FG-IR-21-165 |
|
History
Tue, 22 Oct 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-10-22T21:00:31.912Z
Reserved: 2022-01-03T00:00:00.000Z
Link: CVE-2022-22303
Updated: 2024-08-03T03:07:50.277Z
Status : Modified
Published: 2022-03-02T10:15:08.037
Modified: 2024-11-21T06:46:36.093
Link: CVE-2022-22303
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD