> Improper Authentication of FortiPAM Server
[DATE: 08/09/2026 07:00]
[LANGUAGE: EN]
CVSSv3 Score:
9.1
An improper authentication vulnerability [CWE-287] in the Fortinet Privileged Access Agent Chrome Extension may allow a remote unauthenticated attacker to proxy a user's browser traffic through attacker controlled servers if the user visits a malicious website.
Revised on 2026-09-08 00:00:00