PT-2026-24241 · Fortinet · Fortiswitchaxfixed

Michele Damico

·

Published

2026-03-10

·

Updated

2026-03-18

·

CVE-2026-22628

CVSS v3.1

6.7

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Fortinet FortiSwitchAXFixed versions 1.0.0 through 1.0.1
Description An improper access control issue exists in Fortinet FortiSwitchAXFixed. Exploitation may allow an authenticated administrator to execute system commands through a specially crafted SSH configuration file. The vulnerability relates to deficiencies in access control.
Recommendations Update FortiSwitchAXFixed beyond version 1.0.1.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

BDU:2026-03211
CVE-2026-22628

Affected Products

Fortiswitchaxfixed