imPC@ndo EN

Tracker / CVE-2026-24858

CVE-2026-24858

Sfruttata Critica 9.8

An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] vulnerability in Fortinet FortiAnalyzer 7.6.0 through 7.6.5, FortiAnalyzer 7.4.0 through 7.4.9, FortiAnalyzer 7.2.0 through 7.2.11, FortiAnalyzer 7.0.0 through 7.0.15, FortiManager 7.6.0 through 7.6.5, FortiManager 7.4.0 through 7.4.9, FortiManager 7.2.0 through 7.2.11, FortiManager 7.0.0 through 7.0.15, FortiNAC-F 7.6.3 through 7.6.5, FortiOS 7.6.0 through 7.6.5, FortiOS 7.4.0 through 7.4.10, FortiOS 7.2.0 through 7.2.12, FortiOS 7.0.0 through 7.0.18, FortiProxy 7.6.0 through 7.6.4, FortiProxy 7.4.0 through 7.4.12, FortiProxy 7.2.0 through 7.2.15, FortiProxy 7.0.0 through 7.0.22, FortiWeb 8.0.0 through 8.0.3, FortiWeb 7.6.0 through 7.6.6, FortiWeb 7.4.0 through 7.4.11 may allow an attacker with a FortiCloud account and a registered device to log into other devices registered to other accounts, if FortiCloud SSO authentication is enabled on those devices.

Prodotti e versioni affette

fortinet fortianalyzer · 7.0.0 → 7.0.15
fortinet fortianalyzer · 7.2.0 → 7.2.11
fortinet fortianalyzer · 7.4.0 → 7.4.10
fortinet fortianalyzer · 7.6.0 → 7.6.6
fortinet fortimanager · 7.0.0 → 7.0.15
fortinet fortimanager · 7.2.0 → 7.2.11
fortinet fortimanager · 7.4.0 → 7.4.10
fortinet fortimanager · 7.6.0 → 7.6.6
fortinet fortinac-f · 7.6.3 → 7.6.6
fortinet fortios · 7.0.0 → 7.0.18
fortinet fortios · 7.2.0 → 7.2.12
fortinet fortios · 7.4.0 → 7.4.11
fortinet fortios · 7.6.0 → 7.6.6
fortinet fortiproxy · 7.0.0 → 7.0.22
fortinet fortiproxy · 7.2.0 → 7.2.15
fortinet fortiproxy · 7.4.0 → 7.4.12
fortinet fortiproxy · 7.6.0 → 7.6.4
fortinet fortiweb · 7.4.0 → 7.4.11
fortinet fortiweb · 7.6.0 → 7.6.6
fortinet fortiweb · 8.0.0 → 8.0.3
siemens ruggedcom_ape1808_firmware

Analisi

Questa pagina non è ancora indicizzabile.Finché non contiene un’analisi originale — cosa espone davvero, come verificare in due minuti se un sistema è stato toccato, cosa fare se lo è stato — la pagina resta noindex. È il database a deciderlo, non il modello di pagina.

Riferimenti