Description
Fortinet FortiSwitch FSW-108D-POE, FSW-124D, FSW-124D-POE, FSW-224D-POE, FSW-224D-FPOE, FSW-248D-POE, FSW-248D-FPOE, FSW-424D, FSW-424D-POE, FSW-424D-FPOE, FSW-448D, FSW-448D-POE, FSW-448D-FPOE, FSW-524D, FSW-524D-FPOE, FSW-548D, FSW-548D-FPOE, FSW-1024D, FSW-1048D, FSW-3032D, and FSW-R-112D-POE models, when in FortiLink managed mode and upgraded to 3.4.1, might allow remote attackers to bypass authentication and gain administrative access via an empty password for the rest_admin account.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2016-5559 | Fortinet FortiSwitch FSW-108D-POE, FSW-124D, FSW-124D-POE, FSW-224D-POE, FSW-224D-FPOE, FSW-248D-POE, FSW-248D-FPOE, FSW-424D, FSW-424D-POE, FSW-424D-FPOE, FSW-448D, FSW-448D-POE, FSW-448D-FPOE, FSW-524D, FSW-524D-FPOE, FSW-548D, FSW-548D-FPOE, FSW-1024D, FSW-1048D, FSW-3032D, and FSW-R-112D-POE models, when in FortiLink managed mode and upgraded to 3.4.1, might allow remote attackers to bypass authentication and gain administrative access via an empty password for the rest_admin account. |
References
History
No history.
Subscriptions
Fortinet
Subscribe
Fortiswitch
Subscribe
Fsw-1024d
Subscribe
Fsw-1048d
Subscribe
Fsw-108d-poe
Subscribe
Fsw-124d
Subscribe
Fsw-124d-poe
Subscribe
Fsw-224d-fpoe
Subscribe
Fsw-224d-poe
Subscribe
Fsw-248d-fpoe
Subscribe
Fsw-248d-poe
Subscribe
Fsw-3032d
Subscribe
Fsw-424d
Subscribe
Fsw-424d-fpoe
Subscribe
Fsw-424d-poe
Subscribe
Fsw-448d
Subscribe
Fsw-448d-fpoe
Subscribe
Fsw-448d-poe
Subscribe
Fsw-524d
Subscribe
Fsw-524d-fpoe
Subscribe
Fsw-548d
Subscribe
Fsw-548d-fpoe
Subscribe
Fsw-r-112d-poe
Subscribe
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T00:32:25.809Z
Reserved: 2016-05-10T00:00:00.000Z
Link: CVE-2016-4573
No data.
Status : Modified
Published: 2016-09-09T14:05:07.393
Modified: 2026-05-06T22:30:45.220
Link: CVE-2016-4573
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD