A cleartext storage of sensitive information vulnerability [CWE-312] in FortiTester 2.3.0 up to and including 7.2.3 may allow an attacker with access to the DB contents to retrieve the plaintext password of external servers configured in the device.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
fortinet fortitester |