Fortiguard
Fortiguard https://ift.tt/4pLZtXn Summary An authentication bypass using an alternate path or channel vulnerability [CWE-288] in FortiOS, FortiProxy and FortiSwitchManager may allow an unauthenticated atttacker to perform operations on the administrative interface via specially crafted HTTP or HTTPS requests. Exploitation Status: Fortinet is aware of an instance where this vulnerability was exploited, and recommends immediately validating […]