An insertion of sensitive information into log file vulnerability in Fortinet FortiOS 7.2.0 through 7.2.4 and FortiProxy 7.0.0 through 7.0.10. 7.2.0 through 7.2.1 allows an attacker to read certain passwords in plain text.
Solution:
The product writes sensitive information to a log file.
Link | Tags |
---|---|
https://fortiguard.com/psirt/FG-IR-22-455 | vendor advisory |