VYPR
Medium severity6.0NVD Advisory· Published Aug 4, 2021· Updated Jun 17, 2026

CVE-2021-32596

CVE-2021-32596

Description

A use of one-way hash with a predictable salt vulnerability in the password storing mechanism of FortiPortal 6.0.0 through 6.04 may allow an attacker already in possession of the password store to decrypt the passwords by means of precomputed tables.

Affected products

3
  • cpe:2.3:a:fortinet:fortiportal:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:fortinet:fortiportal:*:*:*:*:*:*:*:*range: >=6.0.0,<=6.0.4
    • (no CPE)range: 6.0.0 - 6.04
    • (no CPE)range: FortiPortal 6.0.4, 6.0.3, 6.0.2, 6.0.1, 6.0.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.