Fortinet Patches Actively Exploited FortiOS Vulnerability
- 事件类型
- Vulnerability
- 报告时间
- 2026-07-28 05:01:49
- 被攻击国家/地区
- USA
- 被攻击行业
- Computer & Network Security
- 被攻击组织
- fortinet
- 被攻击域名
- fortinet.com
- 攻击组织
- None
- 信息来源
- openweb
Original Text
查看原文
原文内容
A sensitive information exposure vulnerability exists in Fortinet FortiOS versions 7.6.0–7.6.1, 7.4.0–7.4.6, and earlier affected releases. A remote unauthenticated attacker may bypass a security patch related to symbolic link persistence mechanisms using specially crafted HTTP requests. Exploitation requires the attacker to have already compromised the device through another filesystem-level vulnerability.