PT-2026-24237 · Fortinet · Fortianalyzer+1
CVE-2025-68482
·
Publicado
2026-03-10
·
Atualizado
2026-03-17
CVSS v3.1
6.9
Média
| Vetor | AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Fortinet FortiAnalyzer versions 6.4 through 7.6.4
Fortinet FortiManager versions 6.4 through 7.6.4
Description
An incorrect certificate validation issue exists in Fortinet FortiAnalyzer and FortiManager. This flaw could allow a remote, unauthenticated attacker to view confidential information through a man-in-the-middle (MITM) attack. The issue stems from errors in the certificate authentication process.
Recommendations
Fortinet FortiAnalyzer version 6.4 through 7.6.4: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Fortinet FortiManager version 6.4 through 7.6.4: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Improper Certificate Validation
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Fortianalyzer
Fortimanager