Fortinet FortiClientEMS
cpe:2.3:a:fortinet:forticlientems:*:*:*:*:*:*:*
- >= 7.4.0, <= 7.4.5
A vulnerability exists in Fortinet FortiClientEMS versions 7.4.0 to 7.4.5 due to the use of a hard-coded symmetric encryption key for PostgreSQL. This vulnerability may allow an authenticated attacker in possession of an encrypted database dump to decrypt the information.
Exploitation of this vulnerability could lead to unauthorized decryption of sensitive information in the database, allowing attackers to access confidential data.
Users are advised to upgrade Fortinet FortiClientEMS to version 7.4.6 or above.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.