CyberRota Analysis
This is a low severity vulnerability with a CVSS score of 3.7. It may be remotely exploitable.
CVE
CVE-2022-30305
Severity
LOW
CVSS
3.7
EPSS
0.61%
Original NVD Description
An insufficient logging [CWE-778] vulnerability in FortiSandbox versions 4.0.0 to 4.0.2, 3.2.0 to 3.2.3 and 3.1.0 to 3.1.5 and FortiDeceptor versions 4.2.0, 4.1.0 through 4.1.1, 4.0.0 through 4.0.2, 3.3.0 through 3.3.3, 3.2.0 through 3.2.2,3.1.0 through 3.1.1 and 3.0.0 through 3.0.2 may allow a remote attacker to repeatedly enter incorrect credentials without causing a log entry, and with no limit on the number of failed authentication attempts.
Related CVEs
Other vulnerabilities affecting the same vendor(s)