> Incorrect Privilege Assignment in Security Fabric
[DATE: 12/08/2025 07:00]
[LANGUAGE: EN]
An incorrect privilege assignment vulnerability [CWE-266] in FortiOS Security Fabric may allow a remote authenticated attacker with high privileges to escalate their privileges to super-admin via registering the device to a malicious FortiManager. Revised on 2025-08-12 00:00:00