ZeroHour

CVE-2025-46775

CVSS 3.1
5.5 medium
EPSS
<1%p5
Published
()
Modified
Description

A debug messages revealing unnecessary information vulnerability in Fortinet FortiExtender 7.6.0 through 7.6.1, FortiExtender 7.4.0 through 7.4.6, FortiExtender 7.2 all versions, FortiExtender 7.0 all versions may allow an authenticated user to obtain administrator credentials via debug log commands.

Vendors
fortinet
Products
fortiextender firmware
Weakness
CWE-1295
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.