HIGH
A cleartext transmission of sensitive information vulnerability [CWE-319] in Fortinet FortiOS version 7.2.0 through 7.2.4, 7.0.0 through 7.0.8, FortiProxy version 7.2.0 through 7.2.1 and 7.0.0 through 7.0.8 allows an authenticated attacker with readonly superadmin privileges to intercept traffic in order to obtain other adminstrators cookies via diagnose CLI commands
Published Jun 13, 2023
7.6
HIGHCVSS 3.1
EPSS 0.13%
Description
Affected products
Remediation
References (2)
Change history (0)
No recorded changes yet.