Back

MEDIUM

An exposure of sensitive information to an unauthorized actor vulnerability in Fortinet FortiADC 7.4.0, FortiADC 7.2 all versions, FortiADC 7.1 all versions, FortiADC 7.0 all versions, FortiADC 6.2 all versions may allow an admin with read-only permission to get the external resources password via the logs of the product

Published Nov 18, 2025

Description

An exposure of sensitive information to an unauthorized actor vulnerability in Fortinet FortiADC 7.4.0, FortiADC 7.2 all versions, FortiADC 7.1 all versions, FortiADC 7.0 all versions, FortiADC 6.2 all versions may allow an admin with read-only permission to get the external resources password via the logs of the product

Affected products

Remediation

Vendor solution

Upgrade to FortiADC version 7.6.0 or above Upgrade to FortiADC version 7.4.3 or above

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner fortinet
Published Nov 18, 2025
Updated Jan 14, 2026
Reserved Aug 4, 2025

CISA Vulnrichment

Updated Nov 19, 2025

NVD

Status Analyzed
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner fortinet
Published Nov 18, 2025
Updated Jan 14, 2026

GitHub

No data