%20(1).webp)
Critical FortiClient SQL Injection Flaw Allows Unauthorized Database Access
A critical security vulnerability in Fortinet’s FortiClient Enterprise Management Server (EMS) is raising serious concerns across enterprise environments, especially those using multi-tenant deployments. Tracked as CVE-2026-21643, the flaw carries a high CVSS score of 9.1 and allows unauthenticated attackers to execute arbitrary SQL commands, potentially leading to full database compromise. The vulnerability affects FortiClient EMS […] The post Critical FortiClient SQL Injection Flaw Allows Unauthorized Database Access appeared first on Cyber Security News.