PT-2022-5800 · Fortinet · Fortiedr

Published

2022-01-19

·

Updated

2022-04-13

·

CVE-2022-23441

CVSS v3.1

9.4

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions FortiEDR versions 4.0.0 through 5.0.2
Description The issue is related to the use of a hard-coded cryptographic key in FortiEDR, which allows a remote attacker to gain unauthorized access to protected information by sending specially crafted messages. This can enable an unauthenticated attacker on the network to disguise as and forge messages from other collectors.
Recommendations For FortiEDR versions 4.0.0 through 5.0.2, consider disabling the use of hard-coded cryptographic keys as a temporary workaround until a patch is available. Restrict access to the affected components to minimize the risk of exploitation.

Fix

Using Hardcoded Credentials

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2022-07201
CVE-2022-23441

Affected Products

Fortiedr