Description
A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiEDR versions 5.0.2, 5.0.1, 5.0.0, 4.0.0 may allow an unauthenticated attacker on the network to disguise as and forge messages from other collectors.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-28516 | A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiEDR versions 5.0.2, 5.0.1, 5.0.0, 4.0.0 may allow an unauthenticated attacker on the network to disguise as and forge messages from other collectors. |
References
| Link | Providers |
|---|---|
| https://fortiguard.com/psirt/FG-IR-22-019 |
|
History
Fri, 25 Oct 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-10-25T13:34:24.967Z
Reserved: 2022-01-19T00:00:00.000Z
Link: CVE-2022-23441
Updated: 2024-08-03T03:43:45.940Z
Status : Modified
Published: 2022-04-06T09:15:08.493
Modified: 2024-11-21T06:48:33.810
Link: CVE-2022-23441
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD