Medium severity6.0NVD Advisory· Published Aug 4, 2021· Updated Jun 17, 2026
CVE-2021-32596
CVE-2021-32596
Description
A use of one-way hash with a predictable salt vulnerability in the password storing mechanism of FortiPortal 6.0.0 through 6.04 may allow an attacker already in possession of the password store to decrypt the passwords by means of precomputed tables.
Affected products
3cpe:2.3:a:fortinet:fortiportal:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:fortinet:fortiportal:*:*:*:*:*:*:*:*range: >=6.0.0,<=6.0.4
- (no CPE)range: 6.0.0 - 6.04
- (no CPE)range: FortiPortal 6.0.4, 6.0.3, 6.0.2, 6.0.1, 6.0.0
Patches
Vulnerability mechanics
References
1- fortiguard.com/advisory/FG-IR-21-094nvdVendor Advisory
News mentions
0No linked articles in our index yet.