First published: Tue Mar 07 2023(Updated: )
An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiManager, FortiAnalyzer, FortiPortal & FortiSwitch may allow an attacker which has obtained access to a restricted administrative account to obtain sensitive information via diagnose debug commands.
Affected Software | Affected Version | How to fix |
---|---|---|
Fortinet FortiManager | ||
Fortinet FortiAnalyzer | ||
Fortinet FortiPortal | ||
Fortinet FortiSwitch |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of FG-IR-18-232 is considered critical due to the potential exposure of sensitive information.
To fix FG-IR-18-232, update your FortiManager, FortiAnalyzer, FortiPortal, and FortiSwitch to the latest patched version from Fortinet.
FG-IR-18-232 affects FortiManager, FortiAnalyzer, FortiPortal, and FortiSwitch.
FG-IR-18-232 is an exposure of sensitive information to an unauthorized actor vulnerability.
An attacker with access to a restricted administrative account may exploit FG-IR-18-232.