Cleartext credentials in diagnose output

Summary

A Cleartext Storage of Sensitive Information in Memory vulnerability [CWE-316] in FortiPAM may allow an authenticated attacker with read-write admin privileges to the CLI to obtain other administrators' credentials via diagnose commands.

Version Affected Solution
FortiPAM 1.7 Not affected Not Applicable
FortiPAM 1.6 1.6.0 Upgrade to 1.6.1 or above
FortiPAM 1.5 1.5 all versions Migrate to a fixed release
FortiPAM 1.4 1.4 all versions Migrate to a fixed release
FortiPAM 1.3 1.3 all versions Migrate to a fixed release
FortiPAM 1.2 1.2 all versions Migrate to a fixed release
FortiPAM 1.1 1.1 all versions Migrate to a fixed release
FortiPAM 1.0 1.0 all versions Migrate to a fixed release

Acknowledgement

Internally discovered and reported by Deborah Geisau of Fortinet Support team and Josh Wang from Fortinet Development team.

Timeline

2025-11-18: Initial publication