FG-IR-24-544: eap-cert-auth bypass via revoked certificate
Published Jun 10, 2025
·Updated
An Improper Certificate Validation vulnerability [CWE-295] in FortiOS may allow an EAP verified remote user to connect from FortiClient via revoked certificate.
Affected Software
3 affected componentsFixes available
Fortinet FortiOS>=7.6.0<=7.6.1
Fortinet FortiOS>=7.4.0<=7.4.7
Fortinet FortiSASE 25.1.a=5
Event History
Jun 10, 2025
Advisory Published
via FortiGuard·12:00 AM
Frequently Asked Questions
1
What is the severity of FG-IR-24-544?
The FG-IR-24-544 vulnerability is considered critical due to improper certificate validation that can allow unauthorized access.
2
How do I fix FG-IR-24-544?
To mitigate FG-IR-24-544, upgrade FortiOS to version 7.6.2 or later, or 7.4.8 or later for applicable versions.
3
Which versions of FortiOS are affected by FG-IR-24-544?
FortiOS versions 7.6.0 to 7.6.1 and 7.4.0 to 7.4.7 are affected by FG-IR-24-544.
4
What does FG-IR-24-544 vulnerability allow an attacker to do?
The FG-IR-24-544 vulnerability allows an attacker to potentially connect through FortiClient using a revoked certificate.
5
Is FortiSASE 25.1.a impacted by FG-IR-24-544?
Yes, FortiSASE 25.1.a is impacted by FG-IR-24-544 if the deployment is at the specified version.