Description
An insertion of sensitive information into log file vulnerability [CWE-532] in the FortiPortal management interface 7.0.0 through 7.0.2 may allow a remote authenticated attacker to read other devices' passwords in the audit log page.
No analysis available yet.
Remediation
Vendor Solution
Please upgrade to FortiPortal version 7.0.3 or above
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-46924 | An insertion of sensitive information into log file vulnerability [CWE-532] in the FortiPortal management interface 7.0.0 through 7.0.2 may allow a remote authenticated attacker to read other devices' passwords in the audit log page. |
References
| Link | Providers |
|---|---|
| https://fortiguard.com/psirt/FG-IR-22-430 |
|
History
No history.
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-10-22T20:50:45.705Z
Reserved: 2022-10-27T07:40:06.590Z
Link: CVE-2022-43954
No data.
Status : Modified
Published: 2023-02-16T19:15:13.650
Modified: 2024-11-21T07:27:24.510
Link: CVE-2022-43954
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD