5.3
CVSSv3

CVE-2021-32591

Published: 08/12/2021 Updated: 08/08/2023
CVSS v2 Base Score: 2.6 | Impact Score: 2.9 | Exploitability Score: 4.9
CVSS v3 Base Score: 5.3 | Impact Score: 3.6 | Exploitability Score: 1.6
VMScore: 231
Vector: AV:N/AC:H/Au:N/C:P/I:N/A:N

Vulnerability Summary

A missing cryptographic steps vulnerability in the function that encrypts users' LDAP and RADIUS credentials in FortiSandbox prior to 4.0.1, FortiWeb prior to 6.3.12, FortiADC prior to 6.2.1, FortiMail 7.0.1 and previous versions may allow an attacker in possession of the password store to compromise the confidentiality of the encrypted secrets.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fortinet fortimail

fortinet fortisandbox

fortinet fortiadc

fortinet fortiweb 5.9.0

fortinet fortiweb 5.9.1

fortinet fortiweb

fortinet fortimail 7.0.1

fortinet fortiadc 6.2.0

fortinet fortisandbox 4.0.0

fortinet fortiadc 6.2.1

fortinet fortimail 7.0.0