CVE-2026-26035
Une vulnérabilité d'authentification incorrecte [CWE-287] dans Fortinet FortiWeb 8.0.0 à 8.0.2, FortiWeb 7.6.0 à 7.6.6, FortiWeb 7.4.0 à 7.4.11, FortiWeb 7.2.0 à 7.2.12, FortiWeb 7.0.0 à 7.0.12 peut permettre à un attaquant distant non authentifié de se connecter au Fortiweb GUI/CLI avec un nom d'utilisateur et un mot de passe aléatoires
Score CVSS9.8 / 10
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HType de faiblesse (CWE)CWE-287
Éditeursfortinet
Produits concernés
| Éditeurs | Produit | Versions |
|---|---|---|
| fortinet | fortiweb | < 7.2.13 |
Articles liés
This product uses the NVD API but is not endorsed or certified by the NVD.
La description technique est notre traduction du texte original du NVD, en anglais.
