A use of hard-coded credentials vulnerability [CWE-798] in FortiNAC-F version 7.2.0, FortiNAC version 9.4.2 and below, 9.2 all versions, 9.1 all versions, 8.8 all versions, 8.7 all versions may allow an authenticated attacker to access to the database via shell commands.
References
Link | Resource |
---|---|
https://fortiguard.com/psirt/FG-IR-22-520 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: fortinet
Published: 2023-05-03T21:27:00.343Z
Updated: 2023-05-03T21:27:00.343Z
Reserved: 2023-02-20T15:09:20.635Z
Link: CVE-2023-26203
JSON object: View
NVD Information
Status : Modified
Published: 2023-05-03T22:15:18.357
Modified: 2023-11-07T04:09:29.740
Link: CVE-2023-26203
JSON object: View
Redhat Information
No data.
CWE