VYPR

Single Sign On

by Fortinet

CVEs (2)

  • CVE-2021-26088HigJul 12, 2021
    risk 0.46cvss 7.1epss 0.01

    An improper authentication vulnerability in FSSO Collector version 5.0.295 and below may allow an unauthenticated user to bypass a FSSO firewall policy and access the protected network via sending specifically crafted UDP login notification packets.

  • CVE-2015-2281Mar 19, 2015
    risk 0.04cvss —epss 0.10

    Stack-based buffer overflow in collectoragent.exe in Fortinet Single Sign On (FSSO) before build 164 allows remote attackers to execute arbitrary code via a large PROCESS_HELLO message to the Message Dispatcher on TCP port 8000.