Vulnerabilidad · Publicado 08/09/2026 · Actualizado 09/09/2026
Fortinet PSIRT publica advisory de seguridad: ZTNA Portal Improper Certificate Validation. Tipo: Vulnerabilidad de seguridad. Producto afectado: Fortios.
CVSSv3 Score: 7.3 An improper certificate validation vulnerability [CWE-295] in FortiOS and FortiProxy Agentless ZTNA portal may allow a remote and unauthenticated attacker to perform a Man-in-the-Middle attack on the communication channel between the ZTNA portal and the backend destination website. Revised on 2026-09-08 00:00:00
Advisory publicado por Fortinet Product Security Incident Response Team (PSIRT).