Fortinet Patches High-Severity Authentication Flaws in FortiWeb, FortiManager

TL;DR. Fortinet released patches for eight vulnerabilities, including critical authentication bugs in its FortiWeb and FortiManager products. - The FortiWeb flaw allowed unauthenticated remote logins with random credentials when specific settings were enabled. - FortiManager's vulnerability permitted remote attackers to impersonate FortiGate devices if a CLI option was set. - Fortinet also addressed a buffer overflow in FortiClient for Windows and other medium-to-low severity issues.

Sources

Back to QLANKR News