{"id":7909,"date":"2022-10-08T08:47:27","date_gmt":"2022-10-08T05:47:27","guid":{"rendered":"https:\/\/www.one-it.ro\/blog\/?p=7909"},"modified":"2022-10-08T10:27:53","modified_gmt":"2022-10-08T07:27:53","slug":"fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate","status":"publish","type":"post","link":"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/","title":{"rendered":"Fortinet avertizeaz\u0103 administratorii IT s\u0103 corecteze imediat erorile critice de ocolire a autentific\u0103rii pe firewall-urile FortiGate"},"content":{"rendered":"\n\n<div class=\"kk-star-ratings kksr-auto kksr-align-right kksr-valign-top\"\n    data-payload='{&quot;align&quot;:&quot;right&quot;,&quot;id&quot;:&quot;7909&quot;,&quot;slug&quot;:&quot;default&quot;,&quot;valign&quot;:&quot;top&quot;,&quot;ignore&quot;:&quot;&quot;,&quot;reference&quot;:&quot;auto&quot;,&quot;class&quot;:&quot;&quot;,&quot;count&quot;:&quot;0&quot;,&quot;legendonly&quot;:&quot;&quot;,&quot;readonly&quot;:&quot;&quot;,&quot;score&quot;:&quot;0&quot;,&quot;starsonly&quot;:&quot;&quot;,&quot;best&quot;:&quot;5&quot;,&quot;gap&quot;:&quot;4&quot;,&quot;greet&quot;:&quot;Rate this post&quot;,&quot;legend&quot;:&quot;0\\\/5 - (0 votes)&quot;,&quot;size&quot;:&quot;12&quot;,&quot;width&quot;:&quot;0&quot;,&quot;_legend&quot;:&quot;{score}\\\/{best} - ({count} {votes})&quot;,&quot;font_factor&quot;:&quot;1.25&quot;}'>\n            \n<div class=\"kksr-stars\">\n    \n<div class=\"kksr-stars-inactive\">\n            <div class=\"kksr-star\" data-star=\"1\" style=\"padding-right: 4px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 12px; height: 12px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" data-star=\"2\" style=\"padding-right: 4px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 12px; height: 12px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" data-star=\"3\" style=\"padding-right: 4px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 12px; height: 12px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" data-star=\"4\" style=\"padding-right: 4px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 12px; height: 12px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" data-star=\"5\" style=\"padding-right: 4px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 12px; height: 12px;\"><\/div>\n        <\/div>\n    <\/div>\n    \n<div class=\"kksr-stars-active\" style=\"width: 0px;\">\n            <div class=\"kksr-star\" style=\"padding-right: 4px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 12px; height: 12px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" style=\"padding-right: 4px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 12px; height: 12px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" style=\"padding-right: 4px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 12px; height: 12px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" style=\"padding-right: 4px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 12px; height: 12px;\"><\/div>\n        <\/div>\n            <div class=\"kksr-star\" style=\"padding-right: 4px\">\n            \n\n<div class=\"kksr-icon\" style=\"width: 12px; height: 12px;\"><\/div>\n        <\/div>\n    <\/div>\n<\/div>\n                \n\n<div class=\"kksr-legend\" style=\"font-size: 9.6px;\">\n            <span class=\"kksr-muted\">Rate this post<\/span>\n    <\/div>\n    <\/div>\n<div id=\"attachment_7910\" style=\"width: 1610px\" class=\"wp-caption aligncenter\"><img aria-describedby=\"caption-attachment-7910\" decoding=\"async\" loading=\"lazy\" class=\"size-full wp-image-7910\" src=\"https:\/\/www.one-it.ro\/blog\/wp-content\/uploads\/2022\/10\/Internet-exposed-FortiGate-firewalls.jpg\" alt=\"Firewall-uri FortiGate expuse la internet (Shodan)\" width=\"1600\" height=\"708\" srcset=\"https:\/\/www.one-it.ro\/blog\/wp-content\/uploads\/2022\/10\/Internet-exposed-FortiGate-firewalls.jpg 1600w, https:\/\/www.one-it.ro\/blog\/wp-content\/uploads\/2022\/10\/Internet-exposed-FortiGate-firewalls-272x120.jpg 272w, https:\/\/www.one-it.ro\/blog\/wp-content\/uploads\/2022\/10\/Internet-exposed-FortiGate-firewalls-1024x453.jpg 1024w, https:\/\/www.one-it.ro\/blog\/wp-content\/uploads\/2022\/10\/Internet-exposed-FortiGate-firewalls-768x340.jpg 768w, https:\/\/www.one-it.ro\/blog\/wp-content\/uploads\/2022\/10\/Internet-exposed-FortiGate-firewalls-1536x680.jpg 1536w\" sizes=\"(max-width: 1600px) 100vw, 1600px\" \/><p id=\"caption-attachment-7910\" class=\"wp-caption-text\">Firewall-uri FortiGate expuse la internet (Shodan)<\/p><\/div>\n<h2>Fortinet a avertizat administratorii IT s\u0103 actualizeze firewall-urile FortiGate \u0219i proxy-urile web FortiProxy la cele mai recente versiuni, care abordeaz\u0103 o vulnerabilitate critic\u0103.<\/h2>\n<h2>Defectul de securitate (urm\u0103rit ca CVE-2022-40684) este o ocolire de autentificare pe interfa\u021ba administrativ\u0103 care ar putea permite actorilor de amenin\u021b\u0103ri la distan\u021b\u0103 s\u0103 se conecteze la dispozitive nepatchate.<\/h2>\n<p>\u201eO ocolire de autentificare folosind o cale sau un canal alternativ [CWE-88] \u00een FortiOS \u0219i FortiProxy poate permite unui atacator neautentificat s\u0103 efectueze opera\u021biuni pe interfa\u021ba administrativ\u0103 prin solicit\u0103ri HTTP sau HTTPS special concepute\u201d, explic\u0103 Fortinet \u00eentr-un buletin de asisten\u021b\u0103 pentru clien\u021bi emis ast\u0103zi.<\/p>\n<p>\u201eAceasta este o vulnerabilitate critic\u0103 \u0219i ar trebui tratat\u0103 cu cea mai mare urgen\u021b\u0103\u201d, adaug\u0103 compania.<br \/>\nDe asemenea, Fortinet a trimis e-mail clien\u021bilor \u0219i le-a sf\u0103tuit s\u0103 se actualizeze imediat la cele mai recente versiuni disponibile.<br \/>\n\u201eDatorit\u0103 capacit\u0103\u021bii de a exploata aceast\u0103 problem\u0103 de la distan\u021b\u0103, Fortinet recomand\u0103 insistent tuturor clien\u021bilor cu versiunile vulnerabile s\u0103 efectueze un upgrade imediat\u201d, a avertizat compania .<br \/>\nPotrivit unei c\u0103ut\u0103ri Shodan , peste 100.000 de firewall-uri FortiGate sunt accesibile de pe Internet, de\u0219i nu se \u0219tie dac\u0103 interfe\u021bele lor de gestionare sunt, de asemenea, expuse.<\/p>\n<p>Lista complet\u0103 a produselor vulnerabile la atacuri care \u00eencearc\u0103 s\u0103 exploateze defectul CVE-2022-40 include:<\/p>\n<ul>\n<li>FortiOS: de la 7.0.0 la 7.0.6 \u0219i de la 7.2.0 la 7.2.1<\/li>\n<li>FortiProxy: De la 7.0.0 la 7.0.6 \u0219i 7.2.0<\/li>\n<\/ul>\n<p><!--more--><\/p>\n<p>Conform buletinului de asisten\u021b\u0103 pentru clien\u021bi de ast\u0103zi, Fortinet a lansat patch-uri de securitate joi, cer\u00e2nd clien\u021bilor s\u0103 actualizeze dispozitivele vulnerabile la versiunile FortiOS\/FortiProxy\u00a0<a href=\"http:\/\/docs.fortinet.com\/document\/fortigate\/7.0.7\/fortios-release-notes\/289806\/resolved-issues\" target=\"_blank\" rel=\"nofollow noopener\">7.0.7<\/a>\u00a0sau\u00a0<a href=\"https:\/\/docs.fortinet.com\/document\/fortigate\/7.2.2\/fortios-release-notes\/289806\/resolved-issues\" target=\"_blank\" rel=\"nofollow noopener\">7.2.2<\/a>\u00a0.<\/p>\n<h2>Solu\u021bie disponibil\u0103 p\u00e2n\u0103 la implementarea patch-urilor<\/h2>\n<p>Compania ofer\u0103, de asemenea, o solu\u021bie pentru cei care nu pot implementa imediat actualiz\u0103ri de securitate.<br \/>\nPentru a \u00eempiedica atacatorii de la distan\u021b\u0103 s\u0103 ocoleasc\u0103 autentificarea \u0219i s\u0103 se conecteze la implement\u0103rile vulnerabile FortiGate \u0219i FortiProxy, clien\u021bii ar trebui s\u0103 limiteze adresele IP care pot ajunge la interfa\u021ba administrativ\u0103 folosind o politic\u0103 local\u0103.<\/p>\n<p data-inc=\"1\">Cu toate acestea, a\u0219a cum sa dezv\u0103luit \u00eentr-o comunicare avansat\u0103, Fortinet sf\u0103tuie\u0219te administratorii s\u0103 dezactiveze interfe\u021bele de utilizator de gestionare la distan\u021b\u0103 pentru a se asigura c\u0103 atacurile poten\u021biale sunt blocate.<\/p>\n<p>\u201eDac\u0103 aceste dispozitive nu pot fi actualizate \u00een timp util, administrarea HTTPS pentru internet ar trebui s\u0103 fie dezactivat\u0103 imediat p\u00e2n\u0103 c\u00e2nd actualizarea poate fi efectuat\u0103\u201d, a spus Fortinet.<\/p>\n<p>Un purt\u0103tor de cuv\u00e2nt al Fortinet a declarat c\u0103 compania va \u00eemp\u0103rt\u0103\u0219i mai multe informa\u021bii \u00een zilele urm\u0103toare.<br \/>\n\u201eComunica\u021biile cu clien\u021bii detaliaz\u0103 adesea cele mai actualizate \u00eendrum\u0103ri \u0219i recomand\u0103 pa\u0219ii urm\u0103tori pentru a-\u0219i proteja \u0219i securiza cel mai bine organiza\u021bia\u201d, a spus purt\u0103torul de cuv\u00e2nt al Fortinet.<br \/>\n\u201eExist\u0103 situa\u021bii \u00een care comunic\u0103rile confiden\u021biale anticipate ale clien\u021bilor pot include avertizare timpurie privind avizele pentru a le permite clien\u021bilor s\u0103 \u00ee\u0219i \u00eent\u0103reasc\u0103 \u0219i mai mult postura de securitate, care apoi vor fi lansate public \u00een zilele urm\u0103toare unui public mai larg.\u201d<\/p>\n<p>&nbsp;<\/p>\n<p><em><span style=\"color: #808080;\">Sursa info: <a style=\"color: #808080;\" href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/fortinet-warns-admins-to-patch-critical-auth-bypass-bug-immediately\/\" target=\"_blank\" rel=\"noopener\">https:\/\/www.bleepingcomputer.com\/news\/security\/fortinet-warns-admins-to-patch-critical-auth-bypass-bug-immediately\/<\/a><\/span><\/em><\/p>\n<p>&nbsp;<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Fortinet a avertizat administratorii IT s\u0103 actualizeze firewall-urile FortiGate \u0219i proxy-urile web FortiProxy la cele mai recente versiuni, care abordeaz\u0103 o vulnerabilitate critic\u0103. Defectul de securitate (urm\u0103rit ca CVE-2022-40684) este o ocolire de autentificare pe interfa\u021ba administrativ\u0103 care ar putea permite actorilor de amenin\u021b\u0103ri la distan\u021b\u0103 s\u0103 se conecteze la dispozitive nepatchate. \u201eO ocolire de [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":7910,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"om_disable_all_campaigns":false,"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0},"categories":[202,16],"tags":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v20.1 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Fortinet avertizeaz\u0103 administratorii IT s\u0103 corecteze imediat erorile critice de ocolire a autentific\u0103rii pe firewall-urile FortiGate - One-IT blog<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/\" \/>\n<meta property=\"og:locale\" content=\"ro_RO\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Fortinet avertizeaz\u0103 administratorii IT s\u0103 corecteze imediat erorile critice de ocolire a autentific\u0103rii pe firewall-urile FortiGate - One-IT blog\" \/>\n<meta property=\"og:description\" content=\"Fortinet a avertizat administratorii IT s\u0103 actualizeze firewall-urile FortiGate \u0219i proxy-urile web FortiProxy la cele mai recente versiuni, care abordeaz\u0103 o vulnerabilitate critic\u0103. Defectul de securitate (urm\u0103rit ca CVE-2022-40684) este o ocolire de autentificare pe interfa\u021ba administrativ\u0103 care ar putea permite actorilor de amenin\u021b\u0103ri la distan\u021b\u0103 s\u0103 se conecteze la dispozitive nepatchate. \u201eO ocolire de [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/\" \/>\n<meta property=\"og:site_name\" content=\"One-IT blog\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/OneIT\" \/>\n<meta property=\"article:published_time\" content=\"2022-10-08T05:47:27+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2022-10-08T07:27:53+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.one-it.ro\/blog\/wp-content\/uploads\/2022\/10\/Internet-exposed-FortiGate-firewalls.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1600\" \/>\n\t<meta property=\"og:image:height\" content=\"708\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"One-IT\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@oneitro\" \/>\n<meta name=\"twitter:site\" content=\"@oneitro\" \/>\n<meta name=\"twitter:label1\" content=\"Scris de\" \/>\n\t<meta name=\"twitter:data1\" content=\"One-IT\" \/>\n\t<meta name=\"twitter:label2\" content=\"Timp estimat pentru citire\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minute\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/\"},\"author\":{\"name\":\"One-IT\",\"@id\":\"https:\/\/www.one-it.ro\/blog\/#\/schema\/person\/22bc65c3ffb17647f9457adc941ab683\"},\"headline\":\"Fortinet avertizeaz\u0103 administratorii IT s\u0103 corecteze imediat erorile critice de ocolire a autentific\u0103rii pe firewall-urile FortiGate\",\"datePublished\":\"2022-10-08T05:47:27+00:00\",\"dateModified\":\"2022-10-08T07:27:53+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/\"},\"wordCount\":545,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\/\/www.one-it.ro\/blog\/#organization\"},\"articleSection\":[\"Sfaturi IT\",\"Tehnic\"],\"inLanguage\":\"ro-RO\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/\",\"url\":\"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/\",\"name\":\"Fortinet avertizeaz\u0103 administratorii IT s\u0103 corecteze imediat erorile critice de ocolire a autentific\u0103rii pe firewall-urile FortiGate - One-IT blog\",\"isPartOf\":{\"@id\":\"https:\/\/www.one-it.ro\/blog\/#website\"},\"datePublished\":\"2022-10-08T05:47:27+00:00\",\"dateModified\":\"2022-10-08T07:27:53+00:00\",\"inLanguage\":\"ro-RO\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/\"]}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.one-it.ro\/blog\/#website\",\"url\":\"https:\/\/www.one-it.ro\/blog\/\",\"name\":\"One-IT blog\",\"description\":\"Mai mult dec\u00e2t un expert, un prieten!\",\"publisher\":{\"@id\":\"https:\/\/www.one-it.ro\/blog\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.one-it.ro\/blog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"ro-RO\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.one-it.ro\/blog\/#organization\",\"name\":\"ONE-IT\",\"url\":\"https:\/\/www.one-it.ro\/blog\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"ro-RO\",\"@id\":\"https:\/\/www.one-it.ro\/blog\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/www.one-it.ro\/blog\/wp-content\/uploads\/2019\/10\/logo_OneIT.png\",\"contentUrl\":\"https:\/\/www.one-it.ro\/blog\/wp-content\/uploads\/2019\/10\/logo_OneIT.png\",\"width\":255,\"height\":230,\"caption\":\"ONE-IT\"},\"image\":{\"@id\":\"https:\/\/www.one-it.ro\/blog\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/OneIT\",\"https:\/\/twitter.com\/oneitro\",\"https:\/\/www.instagram.com\/oneit.ro\/\",\"https:\/\/www.linkedin.com\/company\/oneit\/\",\"https:\/\/www.youtube.com\/oneit\"]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.one-it.ro\/blog\/#\/schema\/person\/22bc65c3ffb17647f9457adc941ab683\",\"name\":\"One-IT\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"ro-RO\",\"@id\":\"https:\/\/www.one-it.ro\/blog\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/719951a327fa9ba9d20500d1492b2dfe?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/719951a327fa9ba9d20500d1492b2dfe?s=96&d=mm&r=g\",\"caption\":\"One-IT\"},\"description\":\"ONE-IT - Smart technologies, Cyber Security, Cloud, integrated IT solutions for business productivity. Detalii despre noi: echipa One-IT\",\"sameAs\":[\"http:\/\/www.one-it.ro\"],\"url\":\"https:\/\/www.one-it.ro\/blog\/author\/one-it\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Fortinet avertizeaz\u0103 administratorii IT s\u0103 corecteze imediat erorile critice de ocolire a autentific\u0103rii pe firewall-urile FortiGate - One-IT blog","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/","og_locale":"ro_RO","og_type":"article","og_title":"Fortinet avertizeaz\u0103 administratorii IT s\u0103 corecteze imediat erorile critice de ocolire a autentific\u0103rii pe firewall-urile FortiGate - One-IT blog","og_description":"Fortinet a avertizat administratorii IT s\u0103 actualizeze firewall-urile FortiGate \u0219i proxy-urile web FortiProxy la cele mai recente versiuni, care abordeaz\u0103 o vulnerabilitate critic\u0103. Defectul de securitate (urm\u0103rit ca CVE-2022-40684) este o ocolire de autentificare pe interfa\u021ba administrativ\u0103 care ar putea permite actorilor de amenin\u021b\u0103ri la distan\u021b\u0103 s\u0103 se conecteze la dispozitive nepatchate. \u201eO ocolire de [&hellip;]","og_url":"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/","og_site_name":"One-IT blog","article_publisher":"https:\/\/www.facebook.com\/OneIT","article_published_time":"2022-10-08T05:47:27+00:00","article_modified_time":"2022-10-08T07:27:53+00:00","og_image":[{"width":1600,"height":708,"url":"https:\/\/www.one-it.ro\/blog\/wp-content\/uploads\/2022\/10\/Internet-exposed-FortiGate-firewalls.jpg","type":"image\/jpeg"}],"author":"One-IT","twitter_card":"summary_large_image","twitter_creator":"@oneitro","twitter_site":"@oneitro","twitter_misc":{"Scris de":"One-IT","Timp estimat pentru citire":"3 minute"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/#article","isPartOf":{"@id":"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/"},"author":{"name":"One-IT","@id":"https:\/\/www.one-it.ro\/blog\/#\/schema\/person\/22bc65c3ffb17647f9457adc941ab683"},"headline":"Fortinet avertizeaz\u0103 administratorii IT s\u0103 corecteze imediat erorile critice de ocolire a autentific\u0103rii pe firewall-urile FortiGate","datePublished":"2022-10-08T05:47:27+00:00","dateModified":"2022-10-08T07:27:53+00:00","mainEntityOfPage":{"@id":"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/"},"wordCount":545,"commentCount":0,"publisher":{"@id":"https:\/\/www.one-it.ro\/blog\/#organization"},"articleSection":["Sfaturi IT","Tehnic"],"inLanguage":"ro-RO","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/","url":"https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/","name":"Fortinet avertizeaz\u0103 administratorii IT s\u0103 corecteze imediat erorile critice de ocolire a autentific\u0103rii pe firewall-urile FortiGate - One-IT blog","isPartOf":{"@id":"https:\/\/www.one-it.ro\/blog\/#website"},"datePublished":"2022-10-08T05:47:27+00:00","dateModified":"2022-10-08T07:27:53+00:00","inLanguage":"ro-RO","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.one-it.ro\/blog\/fortinet-avertizeaza-administratorii-it-sa-corecteze-imediat-erorile-critice-de-ocolire-a-autentificarii-pe-firewall-urile-fortigate\/"]}]},{"@type":"WebSite","@id":"https:\/\/www.one-it.ro\/blog\/#website","url":"https:\/\/www.one-it.ro\/blog\/","name":"One-IT blog","description":"Mai mult dec\u00e2t un expert, un prieten!","publisher":{"@id":"https:\/\/www.one-it.ro\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.one-it.ro\/blog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"ro-RO"},{"@type":"Organization","@id":"https:\/\/www.one-it.ro\/blog\/#organization","name":"ONE-IT","url":"https:\/\/www.one-it.ro\/blog\/","logo":{"@type":"ImageObject","inLanguage":"ro-RO","@id":"https:\/\/www.one-it.ro\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.one-it.ro\/blog\/wp-content\/uploads\/2019\/10\/logo_OneIT.png","contentUrl":"https:\/\/www.one-it.ro\/blog\/wp-content\/uploads\/2019\/10\/logo_OneIT.png","width":255,"height":230,"caption":"ONE-IT"},"image":{"@id":"https:\/\/www.one-it.ro\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/OneIT","https:\/\/twitter.com\/oneitro","https:\/\/www.instagram.com\/oneit.ro\/","https:\/\/www.linkedin.com\/company\/oneit\/","https:\/\/www.youtube.com\/oneit"]},{"@type":"Person","@id":"https:\/\/www.one-it.ro\/blog\/#\/schema\/person\/22bc65c3ffb17647f9457adc941ab683","name":"One-IT","image":{"@type":"ImageObject","inLanguage":"ro-RO","@id":"https:\/\/www.one-it.ro\/blog\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/719951a327fa9ba9d20500d1492b2dfe?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/719951a327fa9ba9d20500d1492b2dfe?s=96&d=mm&r=g","caption":"One-IT"},"description":"ONE-IT - Smart technologies, Cyber Security, Cloud, integrated IT solutions for business productivity. Detalii despre noi: echipa One-IT","sameAs":["http:\/\/www.one-it.ro"],"url":"https:\/\/www.one-it.ro\/blog\/author\/one-it\/"}]}},"_links":{"self":[{"href":"https:\/\/www.one-it.ro\/blog\/wp-json\/wp\/v2\/posts\/7909"}],"collection":[{"href":"https:\/\/www.one-it.ro\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.one-it.ro\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.one-it.ro\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.one-it.ro\/blog\/wp-json\/wp\/v2\/comments?post=7909"}],"version-history":[{"count":6,"href":"https:\/\/www.one-it.ro\/blog\/wp-json\/wp\/v2\/posts\/7909\/revisions"}],"predecessor-version":[{"id":7916,"href":"https:\/\/www.one-it.ro\/blog\/wp-json\/wp\/v2\/posts\/7909\/revisions\/7916"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.one-it.ro\/blog\/wp-json\/wp\/v2\/media\/7910"}],"wp:attachment":[{"href":"https:\/\/www.one-it.ro\/blog\/wp-json\/wp\/v2\/media?parent=7909"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.one-it.ro\/blog\/wp-json\/wp\/v2\/categories?post=7909"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.one-it.ro\/blog\/wp-json\/wp\/v2\/tags?post=7909"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}