CVE-2021-41030: Critical severity fortinet forticlient ems cloud vulnerability
An authentication bypass by capture-replay vulnerability [CWE-294] in FortiClient EMS versions 7.0.1 and below and 6.4.4 and below may allow an unauthenticated attacker to impersonate an existing user by intercepting and re-using valid SAML authentication messages.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2021-41030?
CVE-2021-41030 is an authentication bypass by capture-replay vulnerability in FortiClient EMS versions 7.0.1 and below and 6.4.4 and below.
How does CVE-2021-41030 impact FortiClient EMS?
CVE-2021-41030 may allow an unauthenticated attacker to impersonate an existing user by intercepting and re-using valid SAML authentication messages in FortiClient EMS.
Which versions of FortiClient EMS are affected by CVE-2021-41030?
FortiClient EMS versions 7.0.1 and below and 6.4.4 and below are affected by CVE-2021-41030.
What is the severity of CVE-2021-41030?
CVE-2021-41030 has a severity rating of critical (9.1).
How can I mitigate the vulnerability in FortiClient EMS?
To mitigate the vulnerability, it is recommended to upgrade FortiClient EMS to a version that is not affected by CVE-2021-41030.