تنبيه Fortinet
2941تاريخ التحذير
مستوى الخطورة
رقم التحذير
القطاع المستهدف
3 مارس, 2022
● عالي
2022-4465
الكل
أصدرت Fortinet عدّة تحديثات لمعالجة عددٍ من الثغرات في المنتجات التالية:
- FortiAP-C
- version 5.4.0 through 5.4.3
- FortiManager
- version 5.6.0 through 5.6.11
version 6.0.0 through 6.0.11
version 6.2.0 through 6.2.9
version 6.4.0 through 6.4.7
version 7.0.0 through 7.0.2
- version 5.6.0 through 5.6.11
- FortiAnalyzer
- version 5.6.0 through 5.6.11
version 6.0.0 through 6.0.11
version 6.2.0 through 6.2.9
version 6.4.0 through 6.4.7
version 7.0.0 through 7.0.2 - FortiMail
- version 7.0.0 and below.
- version 6.4.5 and below.
version 6.2.7 and below.
version 6.0.11 and below.
version 5.4.12 and below. - FortiOS
- version 6.4.3 and below
version 6.2.5 and below
version 6.0.11 and below
- version 5.6.0 through 5.6.11
- FortiPortal
- version 6.0.5 and below.
version 5.3.6 and below.
version 5.2.6 and below.
version 5.1.2 and below.
version 5.0.3 and below.
version 4.2.4 and below.
version 4.1.2 and below.
version 4.0.4 and below.
- version 6.0.5 and below.
- FortiToken Mobile (Android)
- version 5.1.0 and below.
- FortiWLM
- versions 8.6.2 and below.
versions 8.5.2 and below.
versions 8.4.2 and below.
versions 8.3.3 and below.
- versions 8.6.2 and below.
يمكن للمهاجم استغلال الثغرات وتنفيذ ما يلي:
- الكشف والإفصاح عن المعلومات
- الدخول الغير مصرّح به
- تنفيذ برمجيات خبيثة عن بعد
يوصي المركز بتحديث النسخ المتأثرة، حيث أصدرت Fortinet توضيحًا لهذه التحديثات:
- https://www.fortiguard.com/psirt/FG-IR-21-227
- https://www.fortiguard.com/psirt/FG-IR-21-255
- https://www.fortiguard.com/psirt/FG-IR-21-028
- https://www.fortiguard.com/psirt/FG-IR-21-008
- https://www.fortiguard.com/psirt/FG-IR-21-165
- https://www.fortiguard.com/psirt/FG-IR-20-091
- https://www.fortiguard.com/psirt/FG-IR-21-099
- https://www.fortiguard.com/psirt/FG-IR-21-189
- https://www.fortiguard.com/psirt/FG-IR-21-210
- https://www.fortiguard.com/psirt/FG-IR-21-106
- https://www.fortiguard.com/psirt/FG-IR-21-128