Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p2r3-58qh-phf8

Опубликовано: 10 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

An Authentication Bypass by Primary Weakness vulnerability [CWE-305] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4 may allow an unauthenticated attacker to bypass LDAP authentication of Agentless VPN or FSSO policy, when the remote LDAP server is configured in a specific way.

An Authentication Bypass by Primary Weakness vulnerability [CWE-305] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4 may allow an unauthenticated attacker to bypass LDAP authentication of Agentless VPN or FSSO policy, when the remote LDAP server is configured in a specific way.

EPSS

Процентиль: 23%
0.00077
Низкий

8.1 High

CVSS3

Дефекты

CWE-305

Связанные уязвимости

CVSS3: 8.1
nvd
3 месяца назад

An Authentication Bypass by Primary Weakness vulnerability [CWE-305] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4 may allow an unauthenticated attacker to bypass LDAP authentication of Agentless VPN or FSSO policy, when the remote LDAP server is configured in a specific way.

CVSS3: 8.1
fstec
3 месяца назад

Уязвимость функции межсетевых экранов SSL-VPN операционных систем Fortinet FortiOS, позволяющая нарушителю обойти существующие механизмы безопасности

EPSS

Процентиль: 23%
0.00077
Низкий

8.1 High

CVSS3

Дефекты

CWE-305