Capacity to use password hashes instead of password for authentication

0
50

CVSSv3 Score: 4.4

A use of password hash instead of password for authentication vulnerability [CWE-836] in FortiWeb may allow an unauthenticated attacker to use the hash in place of the password to authenticate via crafted HTTP/HTTPS requests.

Revised on 2025-12-09 00:00:00

– Read more