Security Advisory

CVE-2022-22303

2.8
LOW

Vulnerability Description

An exposure of sensitive system information to an unauthorized control sphere vulnerability [CWE-497] in FortiManager versions prior to 7.0.2, 6.4.7 and 6.2.9 may allow a low privileged authenticated user to gain access to the FortiGate users credentials via the config conflict file.
Published Date March 2, 2022
Official Source NIST NVD Advisory