CVE-2025-61713

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
18/11/2025
Last modified:
20/11/2025

Description

A Cleartext Storage of Sensitive Information in Memory vulnerability [CWE-316] in Fortinet FortiPAM 1.6.0, FortiPAM 1.5 all versions, FortiPAM 1.4 all versions, FortiPAM 1.3 all versions, FortiPAM 1.2 all versions, FortiPAM 1.1 all versions, FortiPAM 1.0 all versions may allow an authenticated attacker with read-write admin privileges to the CLI to obtain other administrators' credentials via diagnose commands.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:fortinet:fortipam:*:*:*:*:*:*:*:* 1.0.0 (including) 1.6.1 (excluding)


References to Advisories, Solutions, and Tools