VDB
GCVE-110-NCSC-2026-243
GCVE-110-NCSC-2026-243
Advisory PublishedCVSS 7.5/10
Fortinet FortiClient EMS versions 7.2 through 7.4.5 contain an improper certificate validation vulnerability that may allow remote unauthenticated attackers to impersonate an AD Connector and cause information disclosure.
Weaknesses (CWE)
CWE-295Improper Certificate Validation
Risk Scores
CVSS 3.1
7.5/10
High · CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Fortinet | vers:unknown/* | — | — |
Aliases
Browse GCVE Records
75,874 records in the GCVE database · Updated August 4, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.