A use of a one-way hash with a predictable salt vulnerability [CWE-760] in FortiWAN before 4.5.9 may allow an attacker who has previously come in possession of the password file to potentially guess passwords therein stored.
References
Link | Resource |
---|---|
https://fortiguard.com/psirt/FG-IR-21-064 | Vendor Advisory |
Configurations
Information
Published : 2022-04-06 09:15
Updated : 2022-04-13 10:51
NVD link : CVE-2021-26113
Mitre link : CVE-2021-26113
JSON object : View
CWE
CWE-916
Use of Password Hash With Insufficient Computational Effort
Products Affected
fortinet
- fortiwan