Lucene search

K
fortinetFortiGuard LabsFG-IR-22-380
HistoryJun 12, 2023 - 12:00 a.m.

Protect

2023-06-1200:00:00
FortiGuard Labs
www.fortiguard.com
26
cleartext transmission
vulnerability
fortios
fortiproxy
authenticated attacker
intercept traffic
obtain admin cookies

EPSS

0

Percentile

9.0%

A cleartext transmission of sensitive information vulnerability [CWE-319] in FortiOS & FortiProxy may allow an authenticated attacker with readonly superadmin privileges to intercept traffic in order to obtain other adminstrators cookies via diagnose CLI commands.

EPSS

0

Percentile

9.0%

Related for FG-IR-22-380