Weak Cryptographic Algorithm Vulnerability in FortiNAC by Fortinet
CVE-2022-45858

3.8LOW

Key Information:

Vendor
Fortinet
Status
Vendor
CVE Published:
3 May 2023

Summary

A vulnerability exists in FortiNAC products, where a weak cryptographic algorithm may allow attackers to access sensitive information or execute man-in-the-middle attacks. This flaw affects multiple versions of FortiNAC, potentially putting user data at risk and compromising network security.

Affected Version(s)

FortiNAC 9.4.0 <= 9.4.1

FortiNAC 9.2.0 <= 9.2.6

FortiNAC 9.1.0 <= 9.1.9

References

CVSS V3.1

Score:
3.8
Severity:
LOW
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.