PT-2021-23743 · Fortinet · Fortiauthenticator

Published

2021-12-09

·

Updated

2021-12-10

·

CVE-2021-43068

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions Fortinet FortiAuthenticator version 6.4.0
Description The issue is related to improper authentication, allowing users to bypass the second factor of authentication via a RADIUS login portal.
Recommendations For Fortinet FortiAuthenticator version 6.4.0, update to a version that fixes the improper authentication issue to prevent bypassing the second factor of authentication.

Fix

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-43068

Affected Products

Fortiauthenticator