A unprotected storage of credentials in Fortinet FortiSIEM Windows Agent version 4.1.4 and below allows an authenticated user to disclosure agent password due to plaintext credential storage in log files
References
Link | Resource |
---|---|
https://fortiguard.com/advisory/FG-IR-21-175 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: fortinet
Published: 2021-11-02T18:26:34
Updated: 2021-11-02T18:26:34
Reserved: 2021-09-13T00:00:00
Link: CVE-2021-41023
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-11-02T19:15:08.120
Modified: 2022-05-03T16:04:40.443
Link: CVE-2021-41023
JSON object: View
Redhat Information
No data.
CWE