Fortinet Fortigate - Anti brute-force bypass in administrative interface (FG-IR-22-444)

high Nessus Plugin ID 174262

Version 1.2

Jun 15, 2023, 8:01 AM

  • IAVM reference

Plugin Feed: 202306150801

Version 1.1

Apr 19, 2023, 4:23 PM

  • CVSS metrics ("CVSSv2 score" changed from 4.6 to 9.0. "CVSSv2 score" changed from 4.6 to 9.0. "CVSSv3 score" changed from 5.0 to 8.8. "CVSSv3 vector" changed from "CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L" to "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H". "CVSSv2 vector" changed from "CVSS2#AV:N/AC:H/Au:S/C:P/I:P/A:P" to "CVSS2#AV:N/AC:L/Au:S/C:C/I:C/A:C". "CVSSv3 vector" changed from "CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L" to "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H". "CVSSv3 score" changed from 5.0 to 8.8. "CVSSv2 vector" changed from "CVSS2#AV:N/AC:H/Au:S/C:P/I:P/A:P" to "CVSS2#AV:N/AC:L/Au:S/C:C/I:C/A:C". "CVSSv3 vector" changed from "CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:L" to "CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H")
  • CVSSv2 severity (based on CVE-2022-43947, severity increased from "Medium" to "High")
  • CVSSv3 score source (set to "CVE-2022-43947")
  • CVSSv3 severity (based on CVE-2022-43947, severity increased from "Medium" to "High")

Plugin Feed: 202304191623

Version 1.0

Apr 13, 2023, 7:01 PM

  • New

Plugin Feed: 202304131901

* Changelogs are generally available for changes made after Nov 1, 2022