← Home
Broken access control in the RADIUS type admin group
Source: fortinet / FG-IR-26-158
— original advisory
Published: 2026-08-12
· Last updated: 2026-08-12
· Vendor severity: Not rated by vendor
CVEs
| CVE | CVSS | CWE | Exploitation |
| CVE-2026-26035 |
8.8 |
CWE-287: Improper Authentication |
Not observed in the wild |
Affected Products
| Product | Affected versions | Fixed version |
| FortiWeb |
FortiWeb 8.0 |
Not specified by vendor |
| FortiWeb |
FortiWeb 7.6 |
Not specified by vendor |
| FortiWeb |
FortiWeb 7.4 |
Not specified by vendor |
| FortiWeb |
FortiWeb 7.2 |
Not specified by vendor |
| FortiWeb |
FortiWeb 7.0 |
Not specified by vendor |