A improper authentication vulnerability in Fortinet FortiSIEM before 6.5.0 allows a local attacker with CLI access to perform operations on the Glassfish server directly via a hardcoded password.
| Software | From | Fixed in |
|---|---|---|
| fortinet / fortisiem | 6.4.1 | 6.4.1.x |
| fortinet / fortisiem | 6.4.0 | 6.4.0.x |
| fortinet / fortisiem | 6.3.0 | 6.3.3.x |
| fortinet / fortisiem | 6.2.1 | 6.2.1.x |
| fortinet / fortisiem | 6.2.0 | 6.2.0.x |
| fortinet / fortisiem | 6.1.0 | 6.1.2.x |
| fortinet / fortisiem | 5.4.0 | 5.4.0.x |
| fortinet / fortisiem | 5.3.0 | 5.3.3.x |
| fortinet / fortisiem | 5.2.5 | 5.2.8.x |
| fortinet / fortisiem | 5.2.2 | 5.2.2.x |
| fortinet / fortisiem | 5.2.1 | 5.2.1.x |
| fortinet / fortisiem | 5.1.0 | 5.1.3.x |
| fortinet / fortisiem | 5.0.0 | 5.0.0.x |
| fortinet / fortisiem | 5.0.1 | 5.0.1.x |