An Improper Authentication vulnerability [CWE-287] vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.2, FortiWeb 7.6.0 through 7.6.6, FortiWeb 7.4.0 through 7.4.11, FortiWeb 7.2.0 through 7.2.12, FortiWeb 7.0.0 through 7.0.12 may allow a remote unauthenticated attacker to login into the Fortiweb GUI/CLI with a random username and password
Upgrade to FortiWeb version 8.0.3 or above
Upgrade to FortiWeb version 7.6.7 or above
Upgrade to FortiWeb version 7.4.12 or above
Upgrade to upcoming FortiWeb version 7.2.13 or above
Upgrade to upcoming FortiWeb version 7.0.13 or above