Ptechhub
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
PtechHub
No Result
View All Result

Fortinet: ’Critical’ FortiClient EMS Vulnerability Exploited In Attacks

CRN by CRN
April 6, 2026
Home News
Share on FacebookShare on Twitter


The cybersecurity vendor released an emergency patch over the weekend to address the flaw in FortiClient Enterprise Management Server (EMS).

Fortinet disclosed that it has observed exploitation of a vulnerability in its FortiClient EMS (Enterprise Management Server) platform, prompting the release of an emergency patch.

The software update was released on Saturday, with Fortinet urging speedy deployment of the fixes addressing the privilege escalation vulnerability, which is tracked at CVE-2026-35616.

[Related: AI Let ‘Unsophisticated’ Hacker Breach 600 Fortinet Firewalls, AWS Says, As AI Lowers ‘The Barrier’ For Threat Actors]

“Fortinet has observed this to be exploited in the wild and urges vulnerable customers to install the hotfix for FortiClient EMS 7.4.5 and 7.4.6,” the cybersecurity vendor said in its security advisory published Saturday.

The flaw “may allow an unauthenticated attacker to execute unauthorized code or commands via crafted requests,” Fortinet said in the advisory. The vulnerability has been awarded a “critical” rating with a severity score of 9.1 out of 10.0.

While versions of FortiClient EMS 7.4 are affected—specifically versions 7.4.5 and 7.4.6—FortiClient EMS 7.2 is not impacted, according to Fortinet.

In a statement provided to CRN Monday, Fortinet said it has provided “mitigation guidance, patch update and recommended next steps” regarding the vulnerability in its advisory published Saturday.

The company’s “response and remediation efforts remain ongoing,” with the vendor aiming to balance “our commitment to the security of our customers and our culture of responsible transparency,” Fortinet said in the statement. “With that goal and principle top of mind, we are communicating directly with customers to advise on any necessary actions.”

In February, AWS disclosed research findings showing that more than 600 Fortinet FortiGate firewalls had been hacked by “unsophisticated” cybercriminals using off-the-shelf GenAI tools. The threat actors managed to scale the attack to more than 55 countries, according to the incident report from AWS.



Source link

Tags: CyberattacksCybersecuritynetwork securityVulnerabilities
CRN

CRN

Next Post
AstreaX Launches Digital Wallet to Transform Citizen Access to Government Services

AstreaX Launches Digital Wallet to Transform Citizen Access to Government Services

Recommended.

GIFTEDCROOK Malware Evolves: From Browser Stealer to Intelligence-Gathering Tool

GIFTEDCROOK Malware Evolves: From Browser Stealer to Intelligence-Gathering Tool

June 28, 2025
COMMUNITY-LED CARBON CREDIT PROJECTS RECEIVE MAJOR BOOST AS OMTSE VENTURES CONFIRM BACKING OF EARTH SAMA PLATFORM

COMMUNITY-LED CARBON CREDIT PROJECTS RECEIVE MAJOR BOOST AS OMTSE VENTURES CONFIRM BACKING OF EARTH SAMA PLATFORM

June 27, 2025

Trending.

Chai AI Announces Upcoming Rollout of Apple and Google Age Verification APIs to Enhance Platform Safety

Chai AI Announces Upcoming Rollout of Apple and Google Age Verification APIs to Enhance Platform Safety

March 10, 2026
Huawei lanceert Next Generation FAN-oplossing

Huawei lanceert Next Generation FAN-oplossing

March 7, 2026
Baidu Announces Fourth Quarter and Fiscal Year 2025 Results

Baidu Announces Fourth Quarter and Fiscal Year 2025 Results

February 26, 2026
Half of Google’s software development now AI-generated | Computer Weekly

Half of Google’s software development now AI-generated | Computer Weekly

February 5, 2026
Ghost Campaign Uses 7 npm Packages to Steal Crypto Wallets and Credentials

Ghost Campaign Uses 7 npm Packages to Steal Crypto Wallets and Credentials

March 24, 2026

PTechHub

A tech news platform delivering fresh perspectives, critical insights, and in-depth reporting — beyond the buzz. We cover innovation, policy, and digital culture with clarity, independence, and a sharp editorial edge.

Follow Us

Industries

  • AI & ML
  • Cybersecurity
  • Enterprise IT
  • Finance
  • Telco

Navigation

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Subscribe to Our Newsletter

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Copyright © 2025 | Powered By Porpholio

No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs

Copyright © 2025 | Powered By Porpholio