CVE-2024-40585 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

An insertion of sensitive information into log file vulnerabilities [CWE-532] in FortiManager version 7.4.0, version 7.2.3 and below, version 7.0.8 and below, v…
Medium CVSS: 6.5

CVE-2024-40585

An insertion of sensitive information into log file vulnerabilities [CWE-532] in FortiManager version 7.4.0, version 7.2.3 and below, version 7.0.8 and below, version 6.4.12 and below, version 6.2.11 and below and FortiAnalyzer version 7.4.0, version 7.2.3 and below, version 7.0.8 and below, version 6.4.12 and below, version 6.2.11 and below eventlog may allow any low privileged user with access to event log section to retrieve certificate private key and encrypted password logged as system log.
Vendor
Fortinet
Product
Fortimanager
CWE
CWE-532
Yayın Tarihi
2025-03-14 16:15:33
Güncelleme
2025-07-23 21:13:40
Source Identifier
psirt@fortinet.com
KEV Date Added
-

Kategoriler

Referanslar