Lucene search

K
fortinetFortiGuard LabsFG-IR-22-255
HistoryDec 06, 2022 - 12:00 a.m.

Protect

2022-12-0600:00:00
FortiGuard Labs
www.fortiguard.com
32
fortios
ssh
authentication bypass
radius server
remote attacker

EPSS

0.002

Percentile

57.5%

An authentication bypass by assumed-immutable data vulnerability [CWE-302] in the FortiOS SSH login component may allow a remote and unauthenticated attacker to login into the device via sending specially crafted Access-Challenge response from the Radius server.

EPSS

0.002

Percentile

57.5%