Security Advisory

CVE-2020-15942

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-04-12 14:11:25
Last updated 2024-10-25 13:59:32
Assigner fortinet
CVSS score 4.3
State PUBLISHED

Description

An information disclosure vulnerability in Web Vulnerability Scan profile of Fortinet's FortiWeb version 6.2.x below 6.2.4 and version 6.3.x below 6.3.5 may allow a remote authenticated attacker to read the password used by the FortiWeb scanner to access the device defined in the scan profile.