CVE-2016-4573: Critical severity fortinet fortiswitch vulnerability
Fortinet FortiSwitch FSW-108D-POE, FSW-124D, FSW-124D-POE, FSW-224D-POE, FSW-224D-FPOE, FSW-248D-POE, FSW-248D-FPOE, FSW-424D, FSW-424D-POE, FSW-424D-FPOE, FSW-448D, FSW-448D-POE, FSW-448D-FPOE, FSW-524D, FSW-524D-FPOE, FSW-548D, FSW-548D-FPOE, FSW-1024D, FSW-1048D, FSW-3032D, and FSW-R-112D-POE models, when in FortiLink managed mode and upgraded to 3.4.1, might allow remote attackers to bypass authentication and gain administrative access via an empty password for the restadmin account.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-4573?
CVE-2016-4573 has a medium severity, which indicates moderate risk of exploitation.
How do I fix CVE-2016-4573?
To remediate CVE-2016-4573, update FortiSwitch devices to the latest firmware version as recommended by Fortinet.
What products are affected by CVE-2016-4573?
CVE-2016-4573 affects multiple models of FortiSwitch, specifically those running version 3.4.1.
What type of vulnerability is CVE-2016-4573?
CVE-2016-4573 is primarily identified as an exposure of sensitive information vulnerability.
Are there any known exploits for CVE-2016-4573?
As of now, there are no public exploits specifically targeting CVE-2016-4573.