Information Disclosure Vulnerability in Fortinet FortiWan (formerly AscernLink) before 4.2.5

Information Disclosure Vulnerability in Fortinet FortiWan (formerly AscernLink) before 4.2.5

CVE-2016-4967 · MEDIUM Severity

AV:N/AC:L/AU:S/C:P/I:N/A:N

Fortinet FortiWan (formerly AscernLink) before 4.2.5 allows remote authenticated users to obtain sensitive information from (1) a backup of the device configuration via script/cfg_show.php or (2) PCAP files via script/system/tcpdump.php.

Learn more about our User Device Pen Test.