PT-2020-7633 · Fortinet · Fortibalancer

Published

2020-03-19

·

Updated

2020-03-23

·

CVE-2014-2722

CVSS v2.0

9.0

High

VectorAV:N/AC:L/Au:S/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions FortiBalancer versions 400, 1000, 2000, 3000
Description A platform-specific remote access issue has been discovered that may allow a remote user to gain privileged access to affected systems using SSH. The issue is caused by a configuration error and is not the result of an underlying SSH defect.
Recommendations For FortiBalancer versions 400, 1000, 2000, 3000, consider reconfiguring the system to prevent remote access vulnerabilities. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Default Permissions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-2722

Affected Products

Fortibalancer