CVE-2022-41333: High severity fortinet fortirecorder firmware vulnerability
An uncontrolled resource consumption vulnerability [CWE-400] in FortiRecorder version 6.4.3 and below, 6.0.11 and below login authentication mechanism may allow an unauthenticated attacker to make the device unavailable via crafted GET requests.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2022-41333?
CVE-2022-41333 is an uncontrolled resource consumption vulnerability in FortiRecorder version 6.4.3 and below, 6.0.11 and below login authentication mechanism.
How severe is CVE-2022-41333?
CVE-2022-41333 has a severity rating of 7.5 (high).
How does CVE-2022-41333 affect FortiRecorder?
CVE-2022-41333 may allow an unauthenticated attacker to make the FortiRecorder device unavailable via crafted GET requests.
Which versions of FortiRecorder are affected by CVE-2022-41333?
FortiRecorder versions 6.4.3 and below, and 6.0.11 and below are affected by CVE-2022-41333.
How can I mitigate the CVE-2022-41333 vulnerability?
To mitigate the CVE-2022-41333 vulnerability, it is recommended to update FortiRecorder to a version that is not affected.