PT-2022-5800 · Fortinet · Fortiedr
Published
2022-01-19
·
Updated
2022-04-13
·
CVE-2022-23441
CVSS v3.1
9.4
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
FortiEDR versions 4.0.0 through 5.0.2
Description
The issue is related to the use of a hard-coded cryptographic key in FortiEDR, which allows a remote attacker to gain unauthorized access to protected information by sending specially crafted messages. This can enable an unauthenticated attacker on the network to disguise as and forge messages from other collectors.
Recommendations
For FortiEDR versions 4.0.0 through 5.0.2, consider disabling the use of hard-coded cryptographic keys as a temporary workaround until a patch is available. Restrict access to the affected components to minimize the risk of exploitation.
Fix
Using Hardcoded Credentials
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Fortiedr