2.1
CVSSv2

CVE-2022-22303

Published: 02/03/2022 Updated: 10/03/2022
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 188
Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiManager versions before 7.0.2, 6.4.7 and 6.2.9 may allow a low privileged authenticated user to gain access to the FortiGate users credentials via the config conflict file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fortinet fortimanager