Active Fortinet SQL Flaw Targets FortiClient EMS, CISA Warns

1 min read
Source: CyberSecurityNews
Active Fortinet SQL Flaw Targets FortiClient EMS, CISA Warns
Photo: CyberSecurityNews
TL;DR Summary

CISA added CVE-2026-21643, a critical unauthenticated SQL injection in Fortinet FortiClient EMS, to the Known Exploited Vulnerabilities (KEV) catalog, signaling active exploitation in the wild. The flaw enables remote code execution without authentication, risking full database compromise on affected FortiClient EMS deployments. Fortinet has released patches; federal agencies must patch by April 16, 2026, and private-sector admins are urged to patch within three days, monitor for unusual HTTP requests targeting EMS, and take the server offline if patching isn’t possible.

Share this article

Reading Insights

Total Reads

0

Unique Readers

16

Time Saved

54 min

vs 54 min read

Condensed

99%

10,78880 words

Want the full story? Read the original article

Read on CyberSecurityNews