A use of hard-coded credentials vulnerability [CWE-798]...
High severity
Unreviewed
Published
May 4, 2023
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
May 3, 2023
Published to the GitHub Advisory Database
May 4, 2023
Last updated
Apr 4, 2024
A use of hard-coded credentials vulnerability [CWE-798] in FortiNAC-F version 7.2.0, FortiNAC version 9.4.2 and below, 9.2 all versions, 9.1 all versions, 8.8 all versions, 8.7 all versions may allow an authenticated attacker to access to the database via shell commands.
References