Description
An improper certificate validation vulnerability [CWE-295] in FortiClientWindows 6.4 all versions, 7.0.0 through 7.0.7, FortiClientMac 6.4 all versions, 7.0 all versions, 7.2.0 through 7.2.4, FortiClientLinux 6.4 all versions, 7.0 all versions, 7.2.0 through 7.2.4, FortiClientAndroid 6.4 all versions, 7.0 all versions, 7.2.0 and FortiClientiOS 5.6 all versions, 6.0.0 through 6.0.1, 7.0.0 through 7.0.6 SAML SSO feature may allow an unauthenticated attacker to man-in-the-middle the communication between the FortiClient and both the service provider and the identity provider.
INFO
Published Date :
2024-09-10T14:37:48.663Z
Last Modified :
2024-09-10T19:01:23.813Z
Source :
fortinet
AFFECTED PRODUCTS
The following products are affected by CVE-2022-45856 vulnerability.
| Vendors | Products |
|---|---|
| Fortinet |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2022-45856.
| URL | Resource |
|---|---|
| https://fortiguard.fortinet.com/psirt/FG-IR-22-230 |
|