Loading HuntDB...

GHSA-6jcp-68rq-927h

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

An Information Disclosure vulnerability in Fortinet FortiOS 5.6.0 to 5.6.2, 5.4.0 to 5.4.5, 5.2 and below versions allow an admin user with super_admin privileges to view the current SSL VPN web portal session info which may contains user credentials through the fnsysctl CLI command.

Related CVEs

Key Information

GHSA ID
GHSA-6jcp-68rq-927h
Published
May 14, 2022 4:03 AM
Last Modified
May 14, 2022 4:03 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: November 26, 2025 6:30 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.