CVE-2022-45859: Medium severity fortinet fortinac vulnerability
An insufficiently protected credentials vulnerability [CWE-522] in FortiNAC-F 7.2.0, FortiNAC 9.4.1 and below, 9.2.6 and below, 9.1.8 and below, 8.8.0 all versions, 8.7.0 all versions may allow a local attacker with system access to retrieve users' passwords.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2022-45859?
CVE-2022-45859 is considered a high severity vulnerability due to its potential to allow local attackers to retrieve users' passwords.
How do I fix CVE-2022-45859?
To resolve CVE-2022-45859, you should update FortiNAC to the latest version provided by Fortinet that addresses this vulnerability.
Which versions of FortiNAC are affected by CVE-2022-45859?
CVE-2022-45859 affects FortiNAC-F 7.2.0 and FortiNAC versions 8.7.0 to 9.4.1.
What type of vulnerability is CVE-2022-45859 classified as?
CVE-2022-45859 is classified as an insufficiently protected credentials vulnerability, categorized under CWE-522.
Who can exploit CVE-2022-45859?
CVE-2022-45859 can be exploited by local attackers who have system access to the affected FortiNAC environments.