Fortinet FortiOS and FortiADC Improper Access Control Vulnerability
Vendor: Fortinet
Product: FortiOS and FortiADC
Added: 2022-09-08
Due Date: 2022-09-29
Description:
Fortinet FortiOS and FortiADC contain an improper access control vulnerability that allows attackers to obtain the LDAP server login credentials configured in FortiGate by pointing a LDAP server connectivity test request to a rogue LDAP server.
Required Action:
Apply updates per vendor instructions.
CWEs: