CVE-2023-40719: Fortinet Fortianalyzer

Medium severity, CVSS 5.5. EPSS: 0.2% chance of exploitation in the next 30 days.

A use of hard-coded credentials vulnerability in Fortinet FortiAnalyzer and FortiManager 7.0.0 - 7.0.8, 7.2.0 - 7.2.3 and 7.4.0 allows an attacker to access Fortinet private testing data via the use of static credentials.

Affected products

  • Fortinet Fortianalyzer: from 7.0.0, up to and including 7.0.10; from 7.2.0, up to and including 7.2.3; version 7.4.0 only
  • Fortinet FortiManager: from 7.0.0, up to and including 7.0.10; from 7.2.0, up to and including 7.2.3; version 7.4.0 only

Published 2023-11-14. Last modified 2026-06-17.