Clear-text credentials retrievable with IP modification for LDAP

0
2

CVSSv3 Score: 4.1

A Storing Passwords in a Recoverable Format vulnerability [CWE-257] in FortiSOAR may allow an authenticated remote attacker to retrieve Service account password via server address modification in LDAP configuration.

Revised on 2026-04-14 00:00:00

– Read more