Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Fortinet Flaw Enables Man-in-the-Middle Attacks

Fortinet Flaw Enables Man-in-the-Middle Attacks

Posted on September 8, 2026 By CWS

Fortinet has identified a significant security flaw in its FortiOS and FortiProxy systems that could enable attackers to intercept communications. The vulnerability, found within the Agentless Zero Trust Network Access (ZTNA) portal, allows unauthorized individuals to perform man-in-the-middle attacks, potentially compromising sensitive data.

Vulnerability Details and Impact

The flaw, assigned CVE-2026-84393, was disclosed on September 8, 2026, with a CVSSv3 score of 7.3, indicating a high severity. The issue arises from improper certificate validation, a weakness categorized as CWE-295. This vulnerability can be exploited to intercept traffic between the ZTNA portal and its backend connections by presenting a fraudulent certificate.

Such a security gap can lead to attackers gaining access to sensitive information, including session details and application data, without using authentication credentials. The attack is unauthenticated, significantly increasing the risk for organizations that expose ZTNA portals to less secure network segments.

Affected Versions and Recommendations

The vulnerability affects specific versions of FortiOS and FortiProxy. FortiOS versions from 7.6.1 to 7.6.6 and FortiProxy versions from 7.6.2 to 7.6.6 are susceptible, while other versions remain unaffected. Fortinet advises users to upgrade to version 7.6.7 or later to mitigate the risk.

To assist with the upgrade process, Fortinet provides an official upgrade path tool, ensuring a smooth transition without disrupting existing ZTNA policies. Admins should prioritize this patching effort to minimize potential exposure to this security flaw.

Current Exploitation Status and Future Measures

As of now, there is no evidence of this vulnerability being exploited in real-world scenarios. Fortinet has confirmed that the flaw is not listed as a known exploited vulnerability. However, due to the nature of ZTNA portals, which are often exposed to the internet or semi-trusted zones, organizations should not delay in applying the necessary updates.

Ensuring that security systems are up-to-date is crucial in maintaining network integrity. Organizations using the affected ZTNA portals should act swiftly to upgrade to the recommended versions, thereby lessening the risk of potential breaches.

In conclusion, while there is no immediate evidence of exploitation, the potential for severe security breaches makes addressing this vulnerability a top priority for affected organizations. Staying proactive with updates and security patches remains an essential practice in safeguarding digital infrastructures.

Cyber Security News Tags:certificate validation, CVE-2026-84393, Cybersecurity, Fortinet, FortiOS, FortiProxy, information disclosure, man-in-the-middle, network security, patch management, security update, unauthenticated attack, Vulnerability, ZTNA

Post navigation

Previous Post: Hackers Return $263M Stolen from Liquid Network
Next Post: AI-Driven Cyberattacks Compromise Credentials Rapidly

Related Posts

Threat Actors Targeting Ukraine’s Defense Forces With Charity-Themed Malware Campaign Threat Actors Targeting Ukraine’s Defense Forces With Charity-Themed Malware Campaign Cyber Security News
Lumma Infostealer Steal All Data Stored in Browsers and Selling Them in Underground Markets as Logs Lumma Infostealer Steal All Data Stored in Browsers and Selling Them in Underground Markets as Logs Cyber Security News
Iranian Group Utilizes SEO Tactics for Malware Distribution Iranian Group Utilizes SEO Tactics for Malware Distribution Cyber Security News
LockBit 5.0 Infrastructure Exposed in New Server, IP and Domain Leak LockBit 5.0 Infrastructure Exposed in New Server, IP and Domain Leak Cyber Security News
Threat Actors Weaponizing Visual Studio Code to Deploy a Multistage Malware Threat Actors Weaponizing Visual Studio Code to Deploy a Multistage Malware Cyber Security News
Cybercriminals Exploit AI Workflow Tool for Malware Cybercriminals Exploit AI Workflow Tool for Malware Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • FortiGate Firewalls Targeted by Node.js Malware Exploit
  • Adobe Issues Critical Security Updates for Over 170 Flaws
  • AI-Driven Cyberattacks Compromise Credentials Rapidly
  • Fortinet Flaw Enables Man-in-the-Middle Attacks
  • Hackers Return $263M Stolen from Liquid Network

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • FortiGate Firewalls Targeted by Node.js Malware Exploit
  • Adobe Issues Critical Security Updates for Over 170 Flaws
  • AI-Driven Cyberattacks Compromise Credentials Rapidly
  • Fortinet Flaw Enables Man-in-the-Middle Attacks
  • Hackers Return $263M Stolen from Liquid Network

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark