FG-IR-26-160: FGFM Authentication Weakening via CLI Configuration
An Authentication Bypass Using an Alternate Path or Channel [CWE-288] vulnerability in FortiManager and FortiManager Cloud may allow a remote unauthenticated attacker to impersonate any FortiGate managed by the FortiManager with a specific CLI option set via crafted FGFM requests if the attacker has a valid certificate.
Affected Software
Event History
Frequently Asked Questions
What is the severity of FG-IR-26-160?
The severity of FG-IR-26-160 is rated as high, with a score of 7.3.
How do I fix FG-IR-26-160?
To fix FG-IR-26-160, ensure that your FortiManager and FortiManager Cloud installations are updated to the latest versions provided by Fortinet.
What kind of attack does FG-IR-26-160 facilitate?
FG-IR-26-160 facilitates authentication bypass attacks, allowing an unauthenticated attacker to impersonate FortiGate devices.
Which products are affected by FG-IR-26-160?
The affected products for FG-IR-26-160 are Fortinet FortiManager and Fortinet FortiManager Cloud.
What is the impact of exploiting FG-IR-26-160?
Exploiting FG-IR-26-160 can lead to unauthorized access and control over any FortiGate managed by the compromised FortiManager.