Fortinet has released essential updates to mitigate eight vulnerabilities discovered across several of its products. Among these, two significant authentication flaws were identified in FortiWeb and FortiManager, posing high-severity risks.
FortiWeb Authentication Issue
A critical issue in FortiWeb involved improper authentication due to specific non-default configurations. This flaw, designated as CVE-2026-26035, could potentially allow unauthorized remote access to the FortiWeb interface using arbitrary credentials.
The vulnerability is linked to the wildcard setting for admin accounts, which by default is deactivated. If activated, it enables any username on a remote server to be matched with a Remote User account. FortiWeb versions 8.0.3, 7.6.7, 7.4.12, and 7.2.13 now include patches for this vulnerability. Fortinet advises users to disable the wildcard setting as a precaution.
FortiManager Flaw and Other Vulnerabilities
Another vulnerability, CVE-2026-70468, was found in FortiManager, allowing attackers to impersonate any FortiGate device managed by it. This bypass requires specific command-line interface options and a valid certificate for exploitation.
In addition to these, Fortinet addressed a high-severity buffer overflow vulnerability (CVE-2026-70465) in FortiClient for Windows. This flaw could enable unauthorized code execution through manipulated DNS responses.
Additional Security Patches
Beyond the major issues, Fortinet also patched medium- and low-severity vulnerabilities in FortiWeb WAF, FortiOS, and FortiSIEM. The company issued an advisory detailing the impact of CVE-2026-49975, related to the HTTP/2 Bomb attack affecting Apache HTTP Server.
Currently, Fortinet reports no known incidents of these vulnerabilities being exploited in real-world scenarios. Users are advised to review the company’s PSIRT advisories for more comprehensive information.
Keeping systems updated with the latest patches is crucial for maintaining robust cybersecurity defenses. Fortinet’s proactive measures underscore the importance of addressing vulnerabilities promptly to safeguard network infrastructures.
