Cleartext Storage Vulnerability in FortiTester by Fortinet
CVE-2023-40715
5.2MEDIUM
What is CVE-2023-40715?
A cleartext storage of sensitive information vulnerability has been identified in FortiTester versions 2.3.0 through 7.2.3. This issue could allow an unauthorized attacker, with access to the database contents, to compromise system integrity by retrieving plaintext passwords of external servers that have been configured within the FortiTester device. Proper measures should be taken to secure sensitive data storage to prevent such risks.
Affected Version(s)
FortiTester 7.2.0 <= 7.2.3
FortiTester 7.1.0 <= 7.1.1
FortiTester 7.0.0