Lucene search

K
fortinetFortiGuard LabsFG-IR-22-216
HistoryNov 01, 2022 - 12:00 a.m.

FortiSOAR - PostgreSQL DB access to local users

2022-11-0100:00:00
FortiGuard Labs
www.fortiguard.com
30
fortisoar
postgresql
access vulnerability
local attacker
sensitive information
privileged account
missing authentication

EPSS

0

Percentile

12.6%

A missing authentication for critical function [CWE-306] vulnerabilty in FortiSOAR’s Postgres database may allow a local attacker to access sensitive information via logging into the database using a privileged account without a password.

EPSS

0

Percentile

12.6%

Related for FG-IR-22-216