CVE-2017-7737: Fortinet FortiWeb

Medium severity, CVSS 4.9. EPSS: 1.1% chance of exploitation in the next 30 days.

An information disclosure vulnerability in Fortinet FortiWeb 5.8.2 and below versions allows logged-in admin user to view SNMPv3 user password in cleartext in webui via the HTML source code.

Affected products

  • Fortinet FortiWeb: up to and including 5.8.2

Published 2017-08-10. Last modified 2026-06-17.