A use of hard-coded cryptographic key vulnerability in FortiSIEM version 5.2.6 may allow a remote unauthenticated attacker to obtain SSH access to the supervisor as the restricted user "tunneluser" by leveraging knowledge of the private key from another installation or a firmware image.
2025-03-17T14:15:16.360
2025-07-15T16:48:48.100
Analyzed
CVSSv3.1: 3.7 (LOW)