Clear Text Storage Vulnerability in FortiADC and FortiADCManager
CVE-2021-24024
4.3MEDIUM
Key Information:
- Vendor
Fortinet
- Vendor
- CVE Published:
- 12 April 2021
What is CVE-2021-24024?
FortiADCManager and FortiADC products are vulnerable due to the storage of sensitive information in log files in clear text, allowing remote authenticated attackers to access other local users' passwords. This flaw exists in versions 5.3.0 and below, 5.2.1 and below for FortiADCManager, and version 5.3.7 and below for FortiADC, posing risks related to privacy and data integrity.
Affected Version(s)
Fortinet FortiADCManager, FortiADC FortiADCManager 5.3.0 and below, 5.2.1 and below; FortiADC 5.3.7 and below