<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>FG-IR-20-199 &#8211; 21點情報網</title>
	<atom:link href="https://ailog.tw/lifelog/tag/fg-ir-20-199/feed/" rel="self" type="application/rss+xml" />
	<link>https://ailog.tw/lifelog</link>
	<description></description>
	<lastBuildDate>Sat, 05 Jun 2021 05:16:49 +0000</lastBuildDate>
	<language>zh-TW</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.3</generator>
	<item>
		<title>FortiGate SSL VPN漏洞(CVE-2021-26092)</title>
		<link>https://ailog.tw/lifelog/2021/06/05/cve-2021-26092/</link>
		
		<dc:creator><![CDATA[blackjack]]></dc:creator>
		<pubDate>Sat, 05 Jun 2021 05:16:49 +0000</pubDate>
				<category><![CDATA[3C資訊]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[CVE-2021-26092]]></category>
		<category><![CDATA[FG-IR-20-199]]></category>
		<category><![CDATA[FortiGate SSL VPN]]></category>
		<category><![CDATA[FortiGate SSL VPN漏洞(CVE-2021-26092)]]></category>
		<category><![CDATA[SSL]]></category>
		<category><![CDATA[漏洞]]></category>
		<guid isPermaLink="false">https://ailog.tw/lifelog/?p=8970</guid>

					<description><![CDATA[FortiGate SSL VPN漏洞(CVE-2021-26092)，原廠在2021年5月30日已釋出解決方 &#8230; <p class="link-more"><a href="https://ailog.tw/lifelog/2021/06/05/cve-2021-26092/" class="more-link">閱讀全文<span class="screen-reader-text">〈FortiGate SSL VPN漏洞(CVE-2021-26092)〉</span></a></p>]]></description>
										<content:encoded><![CDATA[<p><span style="font-size: 14pt; font-family: verdana, geneva;">FortiGate SSL VPN漏洞(CVE-2021-26092)，原廠在2021年5月30日已釋出解決方案，有啟用SSL VPN的網友，可以參考一下相關風險的解決方案。<span id="more-8970"></span></span></p>
<p><span style="font-size: 14pt; font-family: verdana, geneva;">發布日期：2021年05月30日</span></p>
<p><span style="font-size: 14pt; font-family: verdana, geneva;">IR號碼：FG-IR-20-199</span></p>
<p><span style="font-size: 14pt; font-family: verdana, geneva;">影響：</span><br />
<span style="font-size: 14pt; font-family: verdana, geneva;">在SSL VPN web portal的網頁上有Cross-site Scripting (XSS)的弱點，可能允許未經身份驗證的遠程攻擊者送帶有惡意GET參數進而達到跨站點腳本 (XSS) 攻擊。</span></p>
<p><span style="font-size: 14pt; font-family: verdana, geneva;">受影響的產品：</span><br />
<span style="font-size: 14pt; font-family: verdana, geneva;">FortiOS 5.6系列：FortiGate 5.6.13及以下版本。</span><br />
<span style="font-size: 14pt; font-family: verdana, geneva;">FortiOS 6.0系列：FortiGate 6.0.12及以下版本。</span><br />
<span style="font-size: 14pt; font-family: verdana, geneva;">FortiOS 6.2系列：FortiGate 6.2.7及以下版本。</span><br />
<span style="font-size: 14pt; font-family: verdana, geneva;">FortiOS 6.4系列：FortiGate 6.4.5及以下版本。</span></p>
<p><span style="font-size: 14pt; font-family: verdana, geneva;">解決方案：</span><br />
<span style="font-size: 14pt; font-family: verdana, geneva;">請升級到 FortiGate 6.0.13 或更高版本。</span><br />
<span style="font-size: 14pt; font-family: verdana, geneva;">請升級到 FortiGate 6.2.8 或更高版本。</span><br />
<span style="font-size: 14pt; font-family: verdana, geneva;">請升級到 FortiGate 6.4.6 或更高版本。</span><br />
<span style="font-size: 14pt; font-family: verdana, geneva;">請升級到 FortiGate 7.0.0 或更高版本。</span></p>
<p><span style="font-size: 14pt; font-family: verdana, geneva;">臨時性方案：</span><br />
<span style="font-size: 14pt; font-family: verdana, geneva;">關閉SSL-VPN web認證畫面。</span></p>
<p><span style="font-size: 14pt; font-family: verdana, geneva;">原廠說明網址：</span><br />
<span style="font-size: 14pt; font-family: verdana, geneva;"><a href="https://www.fortiguard.com/psirt/FG-IR-20-199">https://www.fortiguard.com/psirt/FG-IR-20-199</a></span></p>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
