Get a Pentest and security assessment of your IT network.

News

FortiClient improper access control exposes users VPN credentials

Fortinet provided security updates for its next-generation endpoint protection FortiClient product that address a serious information disclosure vulnerability. The flaw, tracked as CVE-2017-14184, could be exploited by an attacker to obtain VPN authentication credentials. Fortinet rated the issue as high severity, while Fortinet has assigned it a 4/5 risk rating. Android and iOS apps not impacted by the flaw are not impacted. The company has developed a proof-of-concept (PoC) tool that leverages on these issued to recover passwords.”]

Source: http://securityaffairs.co/wordpress/66727/hacking/forticlient-improper-access-control.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

BlackEnergy exploits recently fixed flaws in Siemens WinCC

News

Google Chrome will block code injection from third-party software within 14 months