An improper authentication vulnerability in FSSO Collector version 5.0.295 and below may allow an unauthenticated user to bypass a FSSO firewall policy and access the protected network via sending specifically crafted UDP login notification packets.
2021-07-12T14:15:08.113
2024-11-21T05:55:50.907
Modified
CVSSv3.1: 7.1 (HIGH)
AV:A/AC:L/Au:N/C:P/I:P/A:P
6.5
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | fortinet | fortinet_single_sign-on | < 6.4.6 | Yes |
Application | fortinet | fortinet_single_sign-on | < 7.0.1 | Yes |