Fortinet fortiauthenticator是美国Fortinet公司的一个认证管理设备。 Fortinet FortiAuthenticator存在缓冲区错误漏洞,该漏洞源于越界读取问题,可能导致远程未经身份验证的攻击者通过特制请求检索敏感信息。以下版本受到影响:6.6.0版本至6.6.2版本、6.5.0版本至6.5.7版本、6.4.0版本至6.4.11版本和6.3.0版本至6.3.5版本。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Fortinet | FortiAuthenticator | 6.6.0≤ 6.6.2 |
affected |
6.5.0≤ 6.5.7 |
affected | ||
6.4.0≤ 6.4.11 |
affected | ||
6.3.0≤ 6.3.5 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Fortinet | FortiAuthenticator | 6.6.0 ~ 6.6.2 |
cpe:2.3:a:fortinet:fortiauthenticator:6.6.2:*:*:*:*:*:*:*
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-59835 | 7.7 HIGH | Fortinet FortiSandbox 权限许可和访问控制问题漏洞 |
| CVE-2026-59841 | 6.9 MEDIUM | Fortinet FortiSIEMWindowsAgent 授权问题漏洞 |
| CVE-2026-59836 | 6.7 MEDIUM | Fortinet FortiClientEMS 加密问题漏洞 |
| CVE-2026-23573 | 6.1 MEDIUM | Fortinet FortiOS 跨站脚本漏洞 |
| CVE-2026-59837 | 5.9 MEDIUM | Fortinet FortiOS 缓冲区错误漏洞 |
| CVE-2026-59839 | 5.0 MEDIUM | Fortinet FortiOS 路径遍历漏洞 |
| CVE-2026-59840 | 4.1 MEDIUM | Fortinet FortiOS 缓冲区错误漏洞 |
| CVE-2025-43892 | 4.1 MEDIUM | Fortinet FortiOS 缓冲区错误漏洞 |
| CVE-2025-62675 | 3.4 LOW | Fortinet FortiOS 输入验证错误漏洞 |
| CVE-2025-62826 | 3.1 LOW | Fortinet FortiOS 输入验证错误漏洞 |
No comments yet