CVE-2022-40675

Some cryptographic issues in Fortinet FortiNAC versions 9.4.0 through 9.4.1, 9.2.0 through 9.2.7, 9.1.0 through 9.1.8, 8.8.0 through 8.8.11, 8.7.0 through 8.7.6, 8.6.0 through 8.6.5, 8.5.0 through 8.5.4, 8.3.7 may allow an attacker to decrypt and forge protocol communication messages.
References
Link Resource
https://fortiguard.com/psirt/FG-IR-22-312 Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:fortinet:fortinac:*:*:*:*:*:*:*:*
cpe:2.3:a:fortinet:fortinac:*:*:*:*:*:*:*:*
cpe:2.3:a:fortinet:fortinac-f:*:*:*:*:*:*:*:*

History

08 Aug 2023, 14:22

Type Values Removed Values Added
CWE CWE-327 NVD-CWE-noinfo

24 Feb 2023, 21:14

Type Values Removed Values Added
First Time Fortinet fortinac-f
Fortinet
Fortinet fortinac
References (MISC) https://fortiguard.com/psirt/FG-IR-22-312 - (MISC) https://fortiguard.com/psirt/FG-IR-22-312 - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.4
CWE CWE-327
CPE cpe:2.3:a:fortinet:fortinac-f:*:*:*:*:*:*:*:*
cpe:2.3:a:fortinet:fortinac:*:*:*:*:*:*:*:*

16 Feb 2023, 19:39

Type Values Removed Values Added
New CVE

Information

Published : 2023-02-16 19:15

Updated : 2023-12-10 14:48


NVD link : CVE-2022-40675

Mitre link : CVE-2022-40675

CVE.ORG link : CVE-2022-40675


JSON object : View

Products Affected

fortinet

  • fortinac-f
  • fortinac
CWE
NVD-CWE-noinfo CWE-310

Cryptographic Issues