VDB

GCVE-110-NCSC-2026-243

GCVE-110-NCSC-2026-243
Advisory PublishedCVSS 7.5/10
Vulnetix · Advisory published July 17, 2026
Fortinet FortiClient EMS versions 7.2 through 7.4.5 contain an improper certificate validation vulnerability that may allow remote unauthenticated attackers to impersonate an AD Connector and cause information disclosure.

Weaknesses (CWE)

CWE-295Improper Certificate Validation

Risk Scores

CVSS 3.1
7.5/10
High · CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C

Affected Products

VendorProductVersionsPlatforms
Fortinetvers:unknown/*

References

advisory
advisory
advisory

Browse GCVE Records

75,874 records in the GCVE database · Updated August 4, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›