FG-IR-23-475: FortiOS - SSLVPN session hijacking using SAML authentication
A session fixation vulnerability [CWE-384] in FortiOS may allow an unauthenticated attacker to hijack user session via a phishing SAML authentication link.
Affected Software
Event History
Frequently Asked Questions
What is the severity of FG-IR-23-475?
The FG-IR-23-475 vulnerability is considered critical due to its potential for session hijacking by unauthenticated attackers.
How do I fix FG-IR-23-475?
To remediate FG-IR-23-475, upgrade your FortiOS to version 7.4.4 or later, or to version 7.2.8 or later, or to version 7.0.14 or later.
Who is affected by FG-IR-23-475?
The FG-IR-23-475 vulnerability impacts FortiOS versions 7.4.0 to 7.4.3, 7.2.0 to 7.2.7, and 7.0.0 to 7.0.13.
What is session fixation as related to FG-IR-23-475?
Session fixation in FG-IR-23-475 allows attackers to hijack an authenticated session using a manipulated SAML authentication link.
What type of attacks can FG-IR-23-475 enable?
The FG-IR-23-475 vulnerability can enable session hijacking attacks, where an attacker gains unauthorized access to a user's session.