A missing cryptographic steps vulnerability [CWE-325] in the functions that encrypt the keytab files in FortiOS version 7.2.0, 7.0.0 through 7.0.5 and below 7.0.0 may allow an attacker in possession of the encrypted file to decipher it.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Fortios | Fortinet | 6.0.0 (including) | 6.0.14 (including) |
| Fortios | Fortinet | 6.2.0 (including) | 6.2.11 (including) |
| Fortios | Fortinet | 6.4.0 (including) | 6.4.9 (including) |
| Fortios | Fortinet | 7.0.0 (including) | 7.0.6 (excluding) |
| Fortios | Fortinet | 7.2.0 (including) | 7.2.0 (including) |