描述
An Improper Restriction of Excessive Authentication Attempts [CWE-307] in FortiSIEM below 7.0.0 may allow a non-privileged user with access to several endpoints to brute force attack these endpoints.
AI分析AI驱动
受影响产品
fortinetfortisiem
fortinetfortisiem
fortinetfortisiem
fortinetfortisiem
5.2.1
fortinetfortisiem
5.2.2
fortinetfortisiem
5.2.5
fortinetfortisiem
5.2.6
fortinetfortisiem
5.2.7
fortinetfortisiem
5.2.8
fortinetfortisiem
5.4.0
fortinetfortisiem
6.1.0
fortinetfortisiem
6.1.1
fortinetfortisiem
6.1.2
fortinetfortisiem
6.2.0
fortinetfortisiem
6.2.1
fortinetfortisiem
6.4.0
fortinetfortisiem
6.4.1
fortinetfortisiem
6.4.2
fortinetfortisiem
6.5.0
fortinetfortisiem
6.5.1
fortinetfortisiem
6.6.0
fortinetfortisiem
6.6.1
fortinetfortisiem
6.6.2
fortinetfortisiem
6.6.3
fortinetfortisiem
6.7.0
参考资料
- https://fortiguard.com/psirt/FG-IR-22-258Vendor Advisory
- https://fortiguard.com/psirt/FG-IR-22-258Vendor Advisory