← back
CVE-2023-26204

CVE-2023-26204

CVSS 3.6 LOWEPSS 0.4%CWE-256
A plaintext storage of a password vulnerability [CWE-256] in FortiSIEM 6.7 all versions, 6.6 all versions, 6.5 all versions, 6.4 all versions, 6.3 all versions, 6.2 all versions, 6.1 all versions, 5.4 all versions, 5.3 all versions may allow an attacker able to access user DB content to impersonate any admin user on the device GUI.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N/E:F/RL:U/RC:C
Affected products
Fortinet · FortiSIEM

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →