CNNVD-202602-1616 Information

CNNVD ID

CNNVD-202602-1616

CVE-2026-22153

  • CNNVD Published: 2026-02-10

Description (Chinese)

Fortinet FortiOS是美国飞塔(Fortinet)公司的一套专用于FortiGate网络安全平台上的安全操作系统。该系统为用户提供防火墙、防病毒、IPSec/SSLVPN、Web内容过滤和反垃圾邮件等多种安全功能。 Fortinet FortiOS 7.6.0版本至7.6.4版本存在安全漏洞,该漏洞源于主要弱点身份验证绕过,可能导致未经身份验证的攻击者在特定LDAP服务器配置下绕过Agentless VPN或FSSO策略的身份验证。

Description (English)

Fortinet FortiOS is a security operating system dedicated to the FortiGate network security platform of the United States of America. The system provides a wide range of security features for users, including firewalls, anti-virus, IPSEc/SSLVPN, Web content filters and anti-spam. Fortinet FortiOS 7.6.0 to 7.6.4 has a security loophole, which stems from a major vulnerability identification bypass, which may result in an unidentified assailant circumventing the Agentless VPN or FSO strategy under a specific LDAP server configuration.

Vulnerability Type

其他

Affected Vendor

飞塔

Published

2026-02-10

Last Modified

2026-02-24

References

https://fortiguard.fortinet.com/psirt/FG-IR-25-1052 https://access.redhat.com/security/cve/cve-2026-22153

Patch

https://fortiguard.fortinet.com/psirt/FG-IR-25-1052

Share on: