An improper access control vulnerability in Fortinet FortiManager 7.6.0 through 7.6.4, FortiManager 7.4.0 through 7.4.10, FortiManager 7.2 all versions, FortiManager Cloud 7.6.2 through 7.6.4, FortiManager Cloud 7.4.1 through 7.4.10, FortiManager Cloud 7.2 all versions may allow an administrator to bypass the approval process for workflow sessions via crafted HTTP or HTTPs requests.
References
| Link | Resource |
|---|---|
| https://fortiguard.fortinet.com/psirt/FG-IR-26-171 |
Configurations
No configuration.
History
No history.
Information
Published : 2026-09-08 17:17
Updated : 2026-09-08 18:35
NVD link : CVE-2026-22575
Mitre link : CVE-2026-22575
CVE.ORG link : CVE-2026-22575
JSON object : View
Products Affected
No product.
CWE
CWE-284
Improper Access Control
