VYPR
Medium severity5.5NVD Advisory· Published Nov 2, 2021· Updated Jun 17, 2026

CVE-2021-41023

CVE-2021-41023

Description

A unprotected storage of credentials in Fortinet FortiSIEM Windows Agent version 4.1.4 and below allows an authenticated user to disclosure agent password due to plaintext credential storage in log files

Affected products

3
  • cpe:2.3:a:fortinet:fortisiem:*:*:*:*:*:*:*:*
    Range: >=3.1.0,<=4.1.4
  • <=4.1.4+ 1 more
    • (no CPE)range: <=4.1.4
    • (no CPE)range: FortiSIEMWindowsAgent 4.1.4, 4.1.3, 4.1.2, 4.1.1, 4.1.0, 4.0.0, 3.3.0, 3.2.2, 3.2.1, 3.2.0, 3.1.2, 3.1.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.