Lucene search

K
fortinetFortiGuard LabsFG-IR-21-064
HistoryApr 05, 2022 - 12:00 a.m.

FortiWAN - Use of hardcoded salt for password hashing

2022-04-0500:00:00
FortiGuard Labs
www.fortiguard.com
18
fortiwan
password hashing
predictable salt
vulnerability
attackers
password file

EPSS

0.002

Percentile

51.4%

A use of a one-way hash with a predictable salt vulnerability [CWE-760] in FortiWAN may allow an attacker who has previously come in possession of the password file to potentially guess passwords therein stored.

EPSS

0.002

Percentile

51.4%

Related for FG-IR-21-064