Information Exposure Vulnerability in FortiSIEM by Fortinet
CVE-2023-41676
4.2MEDIUM
What is CVE-2023-41676?
An information exposure vulnerability in FortiSIEM allows unauthorized actors to access sensitive data. Specifically, through compromised Windows agent logs, attackers can extract the Windows agent password. This issue affects FortiSIEM versions up to 7.0.0 and all versions before 6.7.5, necessitating immediate attention from users to mitigate potential security risks.
Affected Version(s)
FortiSIEM 7.0.0
FortiSIEM 6.7.0 <= 6.7.5