CVE-2023-41676
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Published Nov 14, 2023
Updated: Nov 21, 2023
CWE ID 522
CWE ID 200
Summary
CVE-2023-41676 is a vulnerability affecting FortiSIEM versions 7.0.0 and earlier up to 6.7.5. This issue (CWE-200) allows unauthorized actors to gain sensitive information by accessing windows agent logs. The windows agent password can be obtained by searching through these logs, posing a significant security risk. FortiSIEM users are advised to update their software to mitigate this exposure and secure their systems against potential attacks.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Products
- FortiSIEM
Affected Vendors
- Fortinet