Alert GCSA-25114 - Vulnerabilita' multiple nei prodotti Fortinet
****************************************************************** Alert ID: GCSA-25114 Data: 15 Ottobre 2025 Titolo: Vulnerabilita' multiple nei prodotti Fortinet ****************************************************************** :: Descrizione del problema Fortinet ha rilasciato degli aggiornamenti per risolvere varie vulnerabilita' presenti nei suoi prodotti: FG-IR-25-756 Authenticated Heap Overflow in SSL-VPN bookmarks FG-IR-24-372 Domain fronting protection bypass in explicit web proxy FG-IR-24-041 FGFM protocol allows unauthenticated reset of the connection FG-IR-24-442 Heap Overflow in fgfmsd FG-IR-24-546 Heap buffer overflow in websocket FG-IR-25-684 Improper autorization over static files FG-IR-24-452 Insertion of Sensitive 2FA Information in logs and debug command FG-IR-24-228 Insertion of Sensitive Information Into Sent Data Vulnerability in csfd daemon FG-IR-24-487 Insufficient Session Expiration in SSLVPN using SAML authentication FG-IR-25-378 Missing authent...