CVE-2022-42473: Fortinet Fortisoar
Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.
A missing authentication for a critical function vulnerability in Fortinet FortiSOAR 6.4.0 - 6.4.4 and 7.0.0 - 7.0.3 and 7.2.0 allows an attacker to disclose information via logging into the database using a privileged account without a password.
Affected products
- Fortinet Fortisoar: from 6.4.0, up to and including 6.4.4; from 7.0.0, up to and including 7.0.3; version 7.2.0 only
Published 2022-11-02. Last modified 2026-06-17.