> IT-Sentinel.com

// Cybersecurity & IT News Aggregator - Real-time Threat Intelligence Feed

NEWS CVE
← messages.back_to_articles

> Authentication bypass via invalid parameter

[SOURCE] Fortinet FortiGuard [DATE: 12/08/2025 07:00] [LANGUAGE: EN]
An improper handling of parameters [CWE-233] vulnerability in FortiWeb may allow an unauthenticated remote attacker in possession of non-public information (pertaining to both the device and to the targeted user) to log in as any existing user on the device via a specially crafted request. Revised on 2025-08-12 00:00:00
[messages.read_original_source] →