CVE-2026-70468
A authentication bypass using an alternate path or channel vulnerability in Fortinet FortiManager 7.6.1, FortiManager 7.4.3 through 7.4.5, FortiManager 7.2.5 through 7.2.9, FortiManager Cloud 7.6.1, FortiManager Cloud 7.4.3 through 7.4.5, FortiManager Cloud 7.2.5 through 7.2.9 may allow attacker to improper access control via <insert attack vector here>
CVSS score8.1 / 10
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:HWeakness type (CWE)CWE-288
Vendorsfortinet
Affected products
| Vendors | Product | Versions |
|---|---|---|
| fortinet | fortimanager | < 7.2.10 |
| fortinet | fortimanager cloud | < 7.2.10 |
Related articles
This product uses the NVD API but is not endorsed or certified by the NVD.
