Vulnerabilities
Vulnerable Software
Fortinet:  >> Fortinac-F  >> 7.2.3  Security Vulnerabilities
An URL Redirection to Untrusted Site ('Open Redirect') vulnerability [CWE-601] vulnerability in Fortinet FortiNAC-F 7.6.0 through 7.6.5, FortiNAC-F 7.4 all versions, FortiNAC-F 7.2 all versions may allow a remote privileged attacker with system administrator role to redirect users to an arbitrary website via crafted CSV file.
CVSS Score
2.4
EPSS Score
0.0
Published
2026-04-14
An improper certificate validation vulnerability [CWE-295] in FortiNAC-F version 7.2.4 and below may allow a remote and unauthenticated attacker to perform a Man-in-the-Middle attack on the HTTPS communication channel between the FortiOS device, an inventory, and FortiNAC-F.
CVSS Score
4.8
EPSS Score
0.001
Published
2025-03-14


Contact Us

Shodan ® - All rights reserved