A improper validation of certificate with host mismatch in Fortinet FortiTokenAndroid version 5.0.3 and below, Fortinet FortiTokeniOS version 5.2.0 and below, Fortinet FortiTokenWinApp version 4.0.3 and below allows attacker to retrieve information disclosed via man-in-the-middle attacks.
References
Link | Resource |
---|---|
https://fortiguard.com/advisory/FG-IR-21-024 | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: fortinet
Published: 2022-07-18T16:35:56
Updated: 2022-07-18T16:35:55
Reserved: 2021-01-04T00:00:00
Link: CVE-2021-22131
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-07-18T18:15:08.620
Modified: 2022-07-25T15:12:27.933
Link: CVE-2021-22131
JSON object: View
Redhat Information
No data.
CWE