CVE-2022-41333
33Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendcvss 6.8epss 7.2%
from disclosure to weapon3 days
Published on NVDMar 7
1st PoC+3d
exploitation probability
7.2%top 6% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
An uncontrolled resource consumption vulnerability [CWE-400] in FortiRecorder version 6.4.3 and below, 6.0.11 and below login authentication mechanism may allow an unauthenticated attacker to make the device unavailable via crafted GET requests.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:P/RL:X/RC:R
Affected products
Fortinet · FortiRecorderpublic PoCs found — 3
exploitdbwww.exploit-db.com/exploits/51326unverifiedgithubgithub.com/polar0x/CVE-2022-41333★ 0cve_referencepacketstormsecurity.com/files/171766/FortiRecorder-6.4.3-Denial-Of-Service.htmlunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.