CVE-2022-45857
05.01.2023, 08:15
An incorrect user management vulnerability [CWE-286] in the FortiManager version 6.4.6 and below VDOM creation component may allow an attacker to access a FortiGate without a password via newly created VDOMs after the super_admin account is deleted.Enginsight
Vendor | Product | Version |
---|---|---|
fortinet | fortimanager | 6.2.0 ≤ 𝑥 < 6.2.9 |
fortinet | fortimanager | 6.4.0 ≤ 𝑥 < 6.4.8 |
fortinet | fortimanager | 7.0.0 ≤ 𝑥 < 7.0.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration