FG-IR-24-472: TACACS+ authentication bypass
A missing authentication for critical function vulnerability [CWE-306] in FortiOS, FortiProxy, and FortiSwitchManager TACACS+ configured to use a remote TACACS+ server for authentication, that has itself been configured to use ASCII authentication may allow an attacker with knowledge of an existing admin account to access the device as a valid admin via an authentication bypass.
Affected Software
Event History
Frequently Asked Questions
What is the severity of FG-IR-24-472?
The severity of FG-IR-24-472 is considered critical due to the potential for unauthenticated access to critical functions.
How do I fix FG-IR-24-472?
To fix FG-IR-24-472, upgrade FortiOS to version 7.6.1 or later, FortiProxy to version 7.6.2 or later, or FortiSwitchManager to version 7.2.6.
Which products are affected by FG-IR-24-472?
FG-IR-24-472 affects FortiOS, FortiProxy, and FortiSwitchManager based on their configured versions.
What is the impact of FG-IR-24-472?
The impact of FG-IR-24-472 allows attackers to exploit missing authentication, potentially compromising critical system functions.
Is FG-IR-24-472 a known vulnerability?
Yes, FG-IR-24-472 is a recognized vulnerability that has been disclosed and documented by Fortinet.