> IT-Sentinel.com

// Cybersecurity & IT News Aggregator - Real-time Threat Intelligence Feed

NEWS CVE
← messages.back_to_articles

> Weak authentication - FGFM protocol

[SOURCE] Fortinet FortiGuard [DATE: 12/08/2025 07:00] [LANGUAGE: EN]
An authentication bypass using an alternate path or channel [CWE-288] vulnerability in FortiOS, FortiProxy & FortiPAM may allow an unauthenticated attacker to seize control of a managed device via crafted FGFM requests, if the device is managed by a FortiManager, and if the attacker knows that FortiManager's serial number. Revised on 2025-08-12 00:00:00
[messages.read_original_source] →