Executive Risk Summary
"A critical vulnerability in Fortinet FortiOS may allow an unauthenticated attacker to bypass LDAP authentication, potentially leading to unauthorized access to the network. The vulnerability affects FortiOS versions 7.6.0 through 7.6.4, and is considered high-risk due to the potential for exploitation."
Operational Audit Arsenal
Manual Verification Required
This is a non-Windows asset (Fortinet). Use the target asset details above to verify your version against vendor advisories.
Patch Impact Forecast
Potential network disruption during firmware update
Internal Work Notes
Technical Intelligence & Operational Utilities • Delivered Weekly
Intelligence Sources
Scope of Impact
Original NVD Description
"An Authentication Bypass by Primary Weakness vulnerability [CWE-305] vulnerability in Fortinet FortiOS 7.6.0 through 7.6.4 may allow an unauthenticated attacker to bypass LDAP authentication of Agentless VPN or FSSO policy, when the remote LDAP server is configured in a specific way."