PT-2026-24241 · Fortinet · Fortiswitchaxfixed
Michele Damico
·
Published
2026-03-10
·
Updated
2026-03-18
·
CVE-2026-22628
CVSS v3.1
6.7
Medium
| Vector | AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Fortinet FortiSwitchAXFixed versions 1.0.0 through 1.0.1
Description
An improper access control issue exists in Fortinet FortiSwitchAXFixed. Exploitation may allow an authenticated administrator to execute system commands through a specially crafted SSH configuration file. The vulnerability relates to deficiencies in access control.
Recommendations
Update FortiSwitchAXFixed beyond version 1.0.1.
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Fortiswitchaxfixed