Medium severity4.3NVD Advisory· Published Feb 16, 2023· Updated Jun 17, 2026
CVE-2022-43954
CVE-2022-43954
Description
An insertion of sensitive information into log file vulnerability [CWE-532] in the FortiPortal management interface 7.0.0 through 7.0.2 may allow a remote authenticated attacker to read other devices' passwords in the audit log page.
Affected products
5cpe:2.3:a:fortinet:fortiportal:7.0.0:*:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:fortinet:fortiportal:7.0.0:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortiportal:7.0.1:*:*:*:*:*:*:*
- cpe:2.3:a:fortinet:fortiportal:7.0.2:*:*:*:*:*:*:*
- (no CPE)range: 7.0.0-7.0.2
- (no CPE)range: 7.0.0
Patches
Vulnerability mechanics
References
1- fortiguard.com/psirt/FG-IR-22-430nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.