Cryptographic Signature Verification Flaw in Fortinet Products
CVE-2021-43074
4.1MEDIUM
Key Information:
- Vendor
Fortinet
- Vendor
- CVE Published:
- 16 February 2023
What is CVE-2021-43074?
A cryptographic signature verification flaw exists in multiple Fortinet products, allowing attackers to intercept admin session management cookies. This vulnerability enables potential decryption of sensitive session information, posing a serious security threat to affected environments.
Affected Version(s)
FortiOS 7.0.0 <= 7.0.3
FortiOS 6.4.0 <= 6.4.8
FortiOS 6.2.0 <= 6.2.12