CVE-2026-22628

medium Fortinet
CVSS v3 Base Score
5.3
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Published: March 10, 2026
Last Modified: March 11, 2026
Vendor: Fortinet

Description

An improper access control vulnerability in Fortinet FortiSwitchAXFixed 1.0.0 through 1.0.1 may allow an authenticated admin to execute system commands via a specifically crafted SSH config file.

CWE

CWE-284

References