Current password requirement bypass for self password change

0
43

CVSSv3 Score: 6.5

An Unverified Password Change vulnerability [CWE-620] in FortiSOAR may allow an attacker who gained access to a victim’s user account to reset the account credentials without being prompted for the account’s password

Revised on 2025-12-09 00:00:00

– Read more