vendor:
FortiTray.exe
by:
Viktor Minin, Alexander Korznikov
9
CVSS
CRITICAL
Password Stealing
N/A
CWE
Product Name: FortiTray.exe
Affected Version From: <=5.4
Affected Version To: <=5.4
Patch Exists: NO
Related CWE: none
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2016
Extracting clear text passwords from running processes(FortiClient)
In our research which involved this program we found that this process store the credentials that you supplied for connecting, in clear text in the process memory. In this situation a potential attacker who hacked your system can reveal your Username and Password steal and use them. This may assist him in gaining persistence access to your Organization LAN network.
Mitigation:
Ensure that the process is not running with elevated privileges and that the credentials are not stored in clear text in the process memory.