cbcvebase.
CVE-2022-42473
published 2022-11-02

CVE-2022-42473: A missing authentication for a critical function vulnerability in Fortinet FortiSOAR 6.4.0 - 6.4.4 and 7.0.0 - 7.0.3 and 7.2.0 allows an attacker to disclose…

medium5.5CVSS 3.1
AVLACLPRLUINSUCHINAN
A missing authentication for a critical function vulnerability in Fortinet FortiSOAR 6.4.0 - 6.4.4 and 7.0.0 - 7.0.3 and 7.2.0 allows an attacker to disclose information via logging into the database using a privileged account without a password.

Affected

6 ranges
VendorProductVersion rangeFixed in
fortinetfortinet
fortinetfortinet_fortisoar
fortinetfortisoar
fortinetfortisoar
fortinetfortisoar6.4.0 – 6.4.4
fortinetfortisoar7.0.0 – 7.0.3