Vulnerability Description
A use of a weak cryptographic algorithm vulnerability [CWE-327] in FortiNAC 9.4.1 and below, 9.2.6 and below, 9.1.0 all versions, 8.8.0 all versions, 8.7.0 all versions may increase the chances of an attacker to have access to sensitive information or to perform man-in-the-middle attacks.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Fortinet | Fortinac | >= 8.7.0, < 9.1.0 |
Related Weaknesses (CWE)
References
- https://fortiguard.com/psirt/FG-IR-22-452Vendor Advisory
- https://fortiguard.com/psirt/FG-IR-22-452Vendor Advisory
FAQ
What is CVE-2022-45858?
CVE-2022-45858 is a vulnerability with a CVSS score of 4.2 (MEDIUM). A use of a weak cryptographic algorithm vulnerability [CWE-327] in FortiNAC 9.4.1 and below, 9.2.6 and below, 9.1.0 all versions, 8.8.0 all versions, 8.7.0 all versions may increase the chances of an ...
How severe is CVE-2022-45858?
CVE-2022-45858 has been rated MEDIUM with a CVSS base score of 4.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-45858?
Check the references section above for vendor advisories and patch information. Affected products include: Fortinet Fortinac.