CVE-2023-41677
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A insufficiently protected credentials in Fortinet FortiProxy 7.4.0, 7.2.0 through 7.2.6, 7.0.0 through 7.0.12, 2.0.0 through 2.0.13, 1.2.0 through 1.2.13, 1.1.0 through 1.1.6, 1.0.0 through 1.0.7, Fortinet FortiOS 7.4.0 through 7.4.1, 7.2.0 through 7.2.6, 7.0.0 through 7.0.12, 6.4.0 through 6.4.14, 6.2.0 through 6.2.15, 6.0.0 through 6.0.17 allows attacker to execute unauthorized code or commands via targeted social engineering attack
Credenciales insuficientemente protegidas en Fortinet FortiProxy 7.4.0, 7.2.0 a 7.2.6, 7.0.0 a 7.0.12, 2.0.0 a 2.0.13, 1.2.0 a 1.2.13, 1.1.0 a 1.1.6 , 1.0.0 a 1.0.7, Fortinet FortiOS 7.4.0 a 7.4.1, 7.2.0 a 7.2.6, 7.0.0 a 7.0.12, 6.4.0 a 6.4.14, 6.2.0 a 6.2.15 , 6.0.0 a 6.0.17 permite al atacante ejecutar código o comandos no autorizados mediante un ataque de ingeniería social dirigido
CVSS Scores
SSVC
- Decision:Track*
Timeline
- 2023-08-30 CVE Reserved
- 2024-04-09 CVE Published
- 2024-04-10 EPSS Updated
- 2024-08-02 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-522: Insufficiently Protected Credentials
CAPEC
References (1)
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Fortinet Search vendor "Fortinet" | FortiOS Search vendor "Fortinet" for product "FortiOS" | >= 7.4.0 <= 7.4.1 Search vendor "Fortinet" for product "FortiOS" and version " >= 7.4.0 <= 7.4.1" | en |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | FortiOS Search vendor "Fortinet" for product "FortiOS" | >= 7.2.0 <= 7.2.6 Search vendor "Fortinet" for product "FortiOS" and version " >= 7.2.0 <= 7.2.6" | en |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | FortiOS Search vendor "Fortinet" for product "FortiOS" | >= 7.0.0 <= 7.0.12 Search vendor "Fortinet" for product "FortiOS" and version " >= 7.0.0 <= 7.0.12" | en |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | FortiOS Search vendor "Fortinet" for product "FortiOS" | >= 6.4.0 <= 6.4.14 Search vendor "Fortinet" for product "FortiOS" and version " >= 6.4.0 <= 6.4.14" | en |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | FortiOS Search vendor "Fortinet" for product "FortiOS" | >= 6.2.0 <= 6.2.15 Search vendor "Fortinet" for product "FortiOS" and version " >= 6.2.0 <= 6.2.15" | en |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | FortiOS Search vendor "Fortinet" for product "FortiOS" | >= 6.0.0 <= 6.0.18 Search vendor "Fortinet" for product "FortiOS" and version " >= 6.0.0 <= 6.0.18" | en |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | FortiProxy Search vendor "Fortinet" for product "FortiProxy" | >= 7.4.0 <= 7.4.1 Search vendor "Fortinet" for product "FortiProxy" and version " >= 7.4.0 <= 7.4.1" | en |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | FortiProxy Search vendor "Fortinet" for product "FortiProxy" | >= 7.2.0 <= 7.2.7 Search vendor "Fortinet" for product "FortiProxy" and version " >= 7.2.0 <= 7.2.7" | en |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | FortiProxy Search vendor "Fortinet" for product "FortiProxy" | >= 7.0.0 <= 7.0.13 Search vendor "Fortinet" for product "FortiProxy" and version " >= 7.0.0 <= 7.0.13" | en |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | FortiProxy Search vendor "Fortinet" for product "FortiProxy" | >= 2.0.0 <= 2.0.14 Search vendor "Fortinet" for product "FortiProxy" and version " >= 2.0.0 <= 2.0.14" | en |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | FortiProxy Search vendor "Fortinet" for product "FortiProxy" | >= 1.2.0 <= 1.2.13 Search vendor "Fortinet" for product "FortiProxy" and version " >= 1.2.0 <= 1.2.13" | en |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | FortiProxy Search vendor "Fortinet" for product "FortiProxy" | >= 1.1.0 <= 1.1.6 Search vendor "Fortinet" for product "FortiProxy" and version " >= 1.1.0 <= 1.1.6" | en |
Affected
| ||||||
Fortinet Search vendor "Fortinet" | FortiProxy Search vendor "Fortinet" for product "FortiProxy" | >= 1.0.0 <= 1.0.7 Search vendor "Fortinet" for product "FortiProxy" and version " >= 1.0.0 <= 1.0.7" | en |
Affected
|