Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
5052 articles · 189092 vulns · 37/41 feeds (7d)
← Back to list
7.3
CVE-2026-70468
fortinet · fortimanager

CVE-2026-70468: A authentication bypass using an alternate path or channel vulnerability in Fortinet FortiManager 7.6.1, FortiManager 7.

Description

A authentication bypass using an alternate path or channel vulnerability in Fortinet FortiManager 7.6.1, FortiManager 7.4.3 through 7.4.5, FortiManager 7.2.5 through 7.2.9, FortiManager Cloud 7.6.1, FortiManager Cloud 7.4.3 through 7.4.5, FortiManager Cloud 7.2.5 through 7.2.9 may allow attacker to improper access control via <insert attack vector here>

Affected Products

VendorProductVersions
fortinetfortimanager7.6.1, 7.4.3, 7.2.5, 7.6.1, 7.4.3, 7.2.5

References

  • https://fortiguard.fortinet.com/psirt/FG-IR-26-160

Related News (2 articles)

Tier C
VulDB8h ago
CVE-2026-70468 | Fortinet FortiManager/FortiManager Cloud up to 7.2.9/7.4.5/7.6.1 access control
→ No new info (linked only)
Tier A
Fortinet PSIRT14h ago
FGFM Authentication Weakening via CLI Configuration
→ No new info (linked only)
CVSS 3.17.3 HIGH
VectorCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
CISA KEV❌ No
Actively exploited❌ No
CWECWE-288
PublishedAug 12, 2026
Trending Score42
Source articles2
Independent2
Info Completeness0/14
Missing: cve_id, title, description, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-26035
CVE-2026-26035: An Improper Authentication vulnerability [CWE-287] vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.
Trending: 52
MEDIUMCVE-2026-70466
CVE-2026-70466: A incomplete list of disallowed inputs vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.
Trending: 48
MEDIUMCVE-2026-71408
CVE-2026-71408: A allocation of resources without limits or throttling vulnerability in Fortinet FortiOS 7.6.0 through 7.6.6, FortiOS 7.
Trending: 43
HIGHCVE-2026-70465
CVE-2026-70465: A buffer copy without checking size of input ('classic buffer overflow') vulnerability in Fortinet FortiClientWindows 7.
Trending: 42
MEDIUMCVE-2026-71407
CVE-2026-71407: A Stack-based Buffer Overflow vulnerability [CWE-121] vulnerability in Fortinet FortiOS 7.6.1 through 7.6.6 may allow an
Trending: 38

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Aug 12, 2026
Discovered by ZDM
Aug 12, 2026