AI Security AI安全 23h ago Updated 5h ago 更新于 5小时前 43

Fortinet Patches Critical Vulnerabilities in FortiMonitorOnSight, Chrome Extension Fortinet 修复 FortiMonitorOnSight 和 Chrome 扩展中的关键漏洞

Fortinet patched 10 vulnerabilities across its product suite, including two critical flaws with CVSS scores of 9.6 and 9.1 CVE-2026-84390 (CVSS 9.6) allows unauthenticated attackers to bypass authentication via forged or reused JWTs in the FortiMonitorOnSight web portal CVE-2026-84388 (CVSS 9.1) enables proxying of user browser traffic through a compromised Chrome extension if the user visits a malicious site High-severity bugs in FortiSandbox and FortiOS/FortiProxy Agentless ZTNA portal allow i Fortinet发布安全补丁修复10个漏洞,包括2个关键漏洞(CVE-2026-84390 CVSS 9.6、CVE-2026-84388 CVSS 9.1) 关键漏洞涉及敏感信息泄露和JWT认证绕过,攻击者可远程未认证利用 修复需协调升级FortiPAM至1.9.1/1.8.4版本,Chrome扩展需8.0.1.123以上版本 高严重性漏洞存在于FortiSandbox和FortiOS/FortiProxy Agentless ZTNA,可导致信息泄露和中间人攻击 其余漏洞涵盖中等和低严重性,涉及FortiManager、FortiAnalyzer、FortiSOAR等多个产品线,目前未发现

65
Hot 热度
65
Quality 质量
55
Impact 影响力

Analysis 深度分析

TL;DR

  • Fortinet patched 10 vulnerabilities across its product suite, including two critical flaws with CVSS scores of 9.6 and 9.1
  • CVE-2026-84390 (CVSS 9.6) allows unauthenticated attackers to bypass authentication via forged or reused JWTs in the FortiMonitorOnSight web portal
  • CVE-2026-84388 (CVSS 9.1) enables proxying of user browser traffic through a compromised Chrome extension if the user visits a malicious site
  • High-severity bugs in FortiSandbox and FortiOS/FortiProxy Agentless ZTNA portal allow information disclosure and man-in-the-middle attacks respectively
  • No evidence of active exploitation in the wild; coordinated upgrades required for FortiPAM and the Chrome extension to fully remediate

Why It Matters

This release underscores the persistent risks of authentication bypass vulnerabilities in enterprise security products, particularly those involving JWT handling and browser extension trust boundaries. For AI practitioners and security professionals, it highlights the importance of supply chain and extension-based attack surfaces in zero-trust architectures.

Technical Details

  • CVE-2026-84390 (CVSS 9.6): Sensitive information inclusion in source code within FortiMonitorOnSight; enables JWT forgery/reuse for unauthenticated access bypass
  • CVE-2026-84388 (CVSS 9.1): Improper authentication in Fortinet Privileged Access Agent Chrome extension; allows browser traffic proxying via malicious website visit
  • CVE-2026-26084 (High): FortiSandbox vulnerability enabling access to sensitive information
  • CVE-2026-84393 (High): FortiOS and FortiProxy Agentless ZTNA portal flaw allowing man-in-the-middle attacks
  • Remediation: FortiPAM must be upgraded to version 1.9.1 or 1.8.4, and the Chrome extension to 8.0.1.123 or above; medium/low-severity patches also address DoS, arbitrary code execution, process termination, and site redirection risks across FortiManager, FortiAnalyzer, FortiSOAR, FortiClient, FortiSIEM, and other products

Industry Insight

  • Organizations relying on Fortinet's zero-trust and privileged access management stack should prioritize the coordinated upgrade of both FortiPAM and the Chrome extension, as partial remediation leaves the attack chain intact
  • The JWT-based authentication bypass reinforces the need for rigorous token validation and rotation policies across all web-facing security portals
  • The breadth of vulnerabilities across Fortinet's product line suggests a systemic review of third-party component dependencies and extension trust models is warranted for enterprises in similar positions

TL;DR

  • Fortinet发布安全补丁修复10个漏洞,包括2个关键漏洞(CVE-2026-84390 CVSS 9.6、CVE-2026-84388 CVSS 9.1)
  • 关键漏洞涉及敏感信息泄露和JWT认证绕过,攻击者可远程未认证利用
  • 修复需协调升级FortiPAM至1.9.1/1.8.4版本,Chrome扩展需8.0.1.123以上版本
  • 高严重性漏洞存在于FortiSandbox和FortiOS/FortiProxy Agentless ZTNA,可导致信息泄露和中间人攻击
  • 其余漏洞涵盖中等和低严重性,涉及FortiManager、FortiAnalyzer、FortiSOAR等多个产品线,目前未发现实际利用案例

为什么值得看

Fortinet作为网络安全领域关键厂商,此次集中修复10个漏洞反映了企业安全产品面临的复杂威胁环境。对安全从业者而言,这些漏洞的修复建议提供了具体的版本升级路径,有助于快速评估和缓解风险。

技术解析

  • CVE-2026-84390(CVSS 9.6):FortiMonitorOnSight Web门户存在敏感信息泄露,攻击者可通过伪造或重用JWT绕过认证机制
  • CVE-2026-84388(CVSS 9.1):Fortinet Privileged Access Agent Chrome扩展存在认证缺陷,恶意网站可劫持用户浏览器流量
  • 高严重性漏洞包括FortiSandbox的信息泄露(CVE-2026-26084)和FortiOS/FortiProxy ZTNA门户的中间人攻击(CVE-2026-84393)
  • 修复方案需要同时升级FortiPAM和Chrome扩展两个组件,体现了安全补丁的协同更新需求
  • 中等和低严重性漏洞分布在FortiManager、FortiAnalyzer、FortiSOAR、FortiClient、FortiSIEM等多个产品,攻击后果包括绕过审批流程、拒绝服务、代码执行和进程终止

行业启示

  • 零信任架构(ZTNA)和浏览器扩展成为安全攻击的新目标,需要加强扩展程序的安全审计
  • 多组件协同修复模式反映了现代安全产品的架构复杂性,补丁管理需要更系统化的方法
  • 尽管存在多个关键漏洞,但厂商确认尚无实际利用案例,说明及时更新和监控的重要性

Disclaimer: The above content is generated by AI and is for reference only. 免责声明:以上内容由 AI 生成,仅供参考。

Security 安全