An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiClientEMS versions 7.0.0 through 7.0.4, 7.0.6 through 7.0.7, in all 6.4 and 6.2 version management interface may allow an unauthenticated attacker to gain information on environment variables such as the EMS installation path.
More Stories
USN-7204-1: NeoMutt vulnerabilities
Jeriko One discovered that NeoMutt incorrectly handled certain IMAP and POP3 responses. An attacker could possibly use this issue to...
pam-u2f-1.3.1-1.el9
FEDORA-EPEL-2025-b1223174a4 Packages in this update: pam-u2f-1.3.1-1.el9 Update description: pam-u2f fix to resolve CVE-2025-23013 (Partial Authentication Bypass). CVSS score 7.3 Read...
pam-u2f-1.3.1-1.fc40
FEDORA-2025-1bb4d2682b Packages in this update: pam-u2f-1.3.1-1.fc40 Update description: pam-u2f fix to resolve CVE-2025-23013 (Partial Authentication Bypass). CVSS score 7.3 Read...
pam-u2f-1.3.1-1.fc41
FEDORA-2025-e136b45e2a Packages in this update: pam-u2f-1.3.1-1.fc41 Update description: pam-u2f fix to resolve CVE-2025-23013 (Partial Authentication Bypass). CVSS score 7.3 Read...
vaultwarden-1.32.7-1.fc41
FEDORA-2025-0abee701c3 Packages in this update: vaultwarden-1.32.7-1.fc41 Update description: update to 1.32.7 Read More
freeipa-4.12.2-3.fc40
FEDORA-2025-6baf694c75 Packages in this update: freeipa-4.12.2-3.fc40 Update description: CVE-2024-11029 Release note: https://www.freeipa.org/release-notes/4-12-3.html Read More