CVE-2023-41676

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Nov 14, 2023
Updated: Nov 21, 2023
CWE ID 522
CWE ID 200

Summary

CVE-2023-41676 is a vulnerability affecting FortiSIEM versions 7.0.0 and earlier up to 6.7.5. This issue (CWE-200) allows unauthorized actors to gain sensitive information by accessing windows agent logs. The windows agent password can be obtained by searching through these logs, posing a significant security risk. FortiSIEM users are advised to update their software to mitigate this exposure and secure their systems against potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share