CVE-2022-23441
published 2022-04-06CVE-2022-23441: A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiEDR versions 5.0.2, 5.0.1, 5.0.0, 4.0.0 may allow an unauthenticated attacker on the…
PriorityP357critical9.1CVSS 3.1
AVNACLPRNUINSUCHIHAN
EPSS
0.90%
55.4th percentile
A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiEDR versions 5.0.2, 5.0.1, 5.0.0, 4.0.0 may allow an unauthenticated attacker on the network to disguise as and forge messages from other collectors.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | fortiedr | — | — |
| fortinet | fortiedr | — | — |
| fortinet | fortiedr | — | — |
| fortinet | fortiedr | — | — |
| fortinet | fortiedr | — | — |
| fortinet | fortinet_fortiedr | — | — |
CVSS provenance
nvdv3.19.1CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:P/I:P/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-39xf-jpcr-gmh4: A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiEDR versions 5
ghsa_unreviewed·2022-04-07
CVE-2022-23441 [CRITICAL] CWE-798 GHSA-39xf-jpcr-gmh4: A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiEDR versions 5
A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiEDR versions 5.0.2, 5.0.1, 5.0.0, 4.0.0 may allow an unauthenticated attacker on the network to disguise as and forge messages from other collectors.
Fortinet
A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiEDR versions 5.0.2, 5.0.1, 5.0.0, 4.0.0 may allow...
vendor_fortinet·2022-04-06·CVSS 9.1
CVE-2022-23441 [CRITICAL] CWE-798 A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiEDR versions 5.0.2, 5.0.1, 5.0.0, 4.0.0 may allow...
FG-IR-22-019: A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiEDR versions 5.0.2, 5.0.1, 5.0.0, 4.0.0 may allow...
A use of hard-coded cryptographic key vulnerability [CWE-321] in FortiEDR versions 5.0.2, 5.0.1, 5.0.0, 4.0.0 may allow an unauthenticated attacker on the network to disguise as and forge messages from other collectors.
CVEs: CVE-2022-23441
CWEs: CWE-798
CVSS: 9.1 (critical)
Affected products: FortiEDR
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-04-06
Published