CVE-2019-6698: Critical severity fortinet fortirecorder firmware vulnerability
Use of Hard-coded Credentials vulnerability in FortiRecorder all versions below 2.7.4 may allow an unauthenticated attacker with knowledge of the aforementioned credentials and network access to FortiCameras to take control of those, provided they are managed by a FortiRecorder device.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-6698?
CVE-2019-6698 is a Use of Hard-coded Credentials vulnerability in FortiRecorder all versions below 2.7.4.
What is the severity of CVE-2019-6698?
The severity of CVE-2019-6698 is critical with a severity value of 9.8.
How can CVE-2019-6698 be exploited?
CVE-2019-6698 can be exploited by an unauthenticated attacker with knowledge of the hard-coded credentials and network access to FortiCameras.
How can I fix CVE-2019-6698?
To fix CVE-2019-6698, upgrade FortiRecorder to version 2.7.4 or above.
Where can I find more information about CVE-2019-6698?
You can find more information about CVE-2019-6698 at the FortiGuard advisory: [FG-IR-19-185](https://fortiguard.com/advisory/FG-IR-19-185)