Home

Description

A improper authentication in Fortinet FortiAuthenticator version 6.4.0 allows user to bypass the second factor of authentication via a RADIUS login portal.

PUBLISHED Reserved 2021-10-28 | Published 2021-12-09 | Updated 2024-10-25 | Assigner fortinet




MEDIUM: 5.4CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N/E:P/RL:X/RC:X

Problem types

Improper access control

Product status

FortiAuthenticator 6.4.0
affected

References

fortiguard.com/advisory/FG-IR-21-212

fortiguard.com/advisory/FG-IR-21-212

cve.org (CVE-2021-43068)

nvd.nist.gov (CVE-2021-43068)

Download JSON