FG-IR-26-125: Missing Authentication for critical function in CAPWAP daemon
A missing authentication for critical function vulnerability [CWE-306] in FortiOS and FortiSwitchManager CAPWAP daemon may allow a local unauthenticated attacker on the same local IP subnet to write device configuration via specially crafted requests. To be successful, this attack requires the targeted FortiGate device to run a specific, non default configuration.
Affected Software
Event History
Frequently Asked Questions
What is the severity of FG-IR-26-125?
FG-IR-26-125 is categorized as a critical vulnerability due to the potential for local unauthenticated attackers to modify device configuration.
How do I fix FG-IR-26-125?
To remediate FG-IR-26-125, update FortiOS to version 7.6.4 or later, or to the recommended versions listed in the advisory depending on your specific version.
Who is affected by FG-IR-26-125?
FG-IR-26-125 affects various versions of FortiOS, specifically those between 6.0 and 7.6.3, so users on these versions should take immediate action.
What type of attack does FG-IR-26-125 expose systems to?
FG-IR-26-125 exposes systems to potential configuration manipulation by local attackers without requiring authentication.
Is FG-IR-26-125 related to any specific Fortinet products?
FG-IR-26-125 specifically impacts the CAPWAP daemon in Fortinet's FortiOS and FortiSwitchManager products.