Fortinet reported on Wednesday the exploitation of a five-year-old vulnerability, CVE-2020-12812, in FortiOS SSL VPN, particularly under specific configurations. This improper authentication flaw, which has a CVSS score of 5.2, allows unauthorized users to log in without the second factor of authentication. The company emphasized the need for users to be aware of this issue and implement necessary security measures. Prompt action is advised to mitigate potential risks from this vulnerability.
Want More Context? 🔎
