Fortinet FortiSIEM 6.5.x < 7.3.6 / 7.4.x < 7.4.3 / 7.5.0 < 7.5.1 SSRF (FG-IR-26-159)

low Nessus Plugin ID 338314

Synopsis

The remote host is affected by a server-side request forgery vulnerability.

Description

The version of Fortinet FortiSIEM running on the remote host is 6.5.x through 7.3.x prior to 7.3.6, 7.4.x prior to 7.4.3, or 7.5.0. It is, therefore, affected by a server-side request forgery vulnerability:

- A server-side request forgery (SSRF) vulnerability in FortiSIEM GUI may allow an authenticated attacker to send HTTP requests originating from the targeted device via specially crafted HTTP requests. (CVE-2026-70467)

Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.

Solution

Upgrade to Fortinet FortiSIEM version 7.3.6, 7.4.3, or 7.5.1 or later.

See Also

https://fortiguard.fortinet.com/psirt/FG-IR-26-159

Plugin Details

Severity: Low

ID: 338314

File Name: fortinet_fortisiem_FG-IR-26-159.nasl

Version: 1.1

Type: Combined

Agent: unix

Family: Misc.

Published: 8/20/2026

Updated: 8/20/2026

Supported Sensors: Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Low

Score: 2.1

Percentile: 7.91

CVSS v2

Risk Factor: Medium

Base Score: 4.7

Vector: CVSS2#AV:N/AC:L/Au:M/C:P/I:P/A:N

CVSS Score Source: CVE-2026-70467

CVSS v3

Risk Factor: Low

Base Score: 3.8

Vector: CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:L/A:N

Vulnerability Information

CPE: cpe:/a:fortinet:fortisiem

Required KB Items: installed_sw/Fortinet FortiSIEM

Patch Publication Date: 8/12/2026

Vulnerability Publication Date: 8/12/2026

Reference Information

CVE: CVE-2026-70467

CWE: 918