Authentication bypass using an alternate path or channel in FortiManager - CVE-2026-70468
Published: August 13, 2026
Vulnerability details
The vulnerability allows a remote non-authenticated attacker to execute arbitrary code.
The vulnerability exists due to authentication bypass using an alternate path or channel via CLI Configuration. A remote unauthenticated attacker can impersonate any FortiGate managed by the FortiManager with a specific CLI option set via crafted FGFM requests if the attacker has a valid certificate.