VYPR

FortiSIEM Windows Agent

by Fortinet

CVEs (3)

  • CVE-2021-41023Nov 2, 2021
    risk 0.00cvss epss 0.00

    A unprotected storage of credentials in Fortinet FortiSIEM Windows Agent version 4.1.4 and below allows an authenticated user to disclosure agent password due to plaintext credential storage in log files

  • CVE-2021-41022Nov 2, 2021
    risk 0.00cvss epss 0.00

    A improper privilege management in Fortinet FortiSIEM Windows Agent version 4.1.4 and below allows attacker to execute privileged code or commands via powershell scripts

  • CVE-2020-9292Jun 4, 2020
    risk 0.00cvss epss 0.02

    An unquoted service path vulnerability in the FortiSIEM Windows Agent component may allow an attacker to gain elevated privileges via the AoWinAgt executable service path.