An exposure of sensitive information to an unauthorized actor [CWE-200] in FortiSIEM version 7.0.0 and before 6.7.5 may allow an attacker with access to windows agent logs to obtain the windows agent password via searching through the logs.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://fortiguard.com/psirt/FG-IR-23-290 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: fortinet
Published: 2023-11-14T18:05:39.178Z
Updated: 2024-08-30T18:13:25.243Z
Reserved: 2023-08-30T13:42:39.547Z
Link: CVE-2023-41676
Vulnrichment
Updated: 2024-08-02T19:01:35.398Z
NVD
Status : Analyzed
Published: 2023-11-14T18:15:52.590
Modified: 2023-11-21T01:36:19.403
Link: CVE-2023-41676
Redhat
No data.