Gallery

Contacts

411 University St, Seattle, USA

engitech@oceanthemes.net

+1 -800-456-478-23

Fortinet has disclosed a critical unauthenticated remote code execution vulnerability in FortiAuthenticator, the authentication and network access control platform deployed across enterprise environments. An unauthenticated attacker who can reach the API can execute arbitrary commands without credentials, potentially collapsing multi-factor authentication enforcement across every downstream system tied to the affected instance. Fixed versions are available; organizations running FortiAuthenticator 6.5.x, 6.6.x, or 8.0.x should treat patching as an emergency priority.

Author

Tech Jacks Solutions