Project Subscriptions
No advisories yet.
Solution
Upgrade to FortiTokenAndroid version 6.4.0 or above
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://fortiguard.fortinet.com/psirt/FG-IR-26-130 |
|
Fri, 26 Jun 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Export of Android Components Allows Unauthorized Access in FortiTokenAndroid |
Fri, 26 Jun 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A improper export of android application components vulnerability in Fortinet FortiTokenAndroid 6.2 all versions, FortiTokenAndroid 6.1 all versions, FortiTokenAndroid 5.2 all versions may allow attacker to improper access control via <insert attack vector here> | An improper export of android application components vulnerability in Fortinet FortiTokenAndroid 6.2 all versions, FortiTokenAndroid 6.1 all versions, FortiTokenAndroid 5.2 all versions may allow attacker to disclose information via an exported Content Provider URI. |
Sat, 16 May 2026 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Fortinet fortitoken Mobile
|
|
| CPEs | cpe:2.3:a:fortinet:fortitoken_mobile:5.2.0:*:*:*:*:android:*:* cpe:2.3:a:fortinet:fortitoken_mobile:5.2.1:*:*:*:*:android:*:* cpe:2.3:a:fortinet:fortitoken_mobile:5.2.2:*:*:*:*:android:*:* cpe:2.3:a:fortinet:fortitoken_mobile:6.1.0:*:*:*:*:android:*:* cpe:2.3:a:fortinet:fortitoken_mobile:6.2.0:*:*:*:*:android:*:* |
|
| Vendors & Products |
Fortinet fortitoken Mobile
|
Tue, 12 May 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Export of Android Components Allows Unauthorized Access in FortiTokenAndroid |
Tue, 12 May 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 12 May 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A improper export of android application components vulnerability in Fortinet FortiTokenAndroid 6.2 all versions, FortiTokenAndroid 6.1 all versions, FortiTokenAndroid 5.2 all versions may allow attacker to improper access control via <insert attack vector here> | |
| First Time appeared |
Fortinet
Fortinet fortitokenandroid |
|
| Weaknesses | CWE-926 | |
| CPEs | cpe:2.3:a:fortinet:fortitokenandroid:5.2.0:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortitokenandroid:5.2.1:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortitokenandroid:5.2.2:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortitokenandroid:6.1.0:*:*:*:*:*:*:* cpe:2.3:a:fortinet:fortitokenandroid:6.2.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Fortinet
Fortinet fortitokenandroid |
|
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2026-06-26T08:23:24.786Z
Reserved: 2026-05-05T17:24:18.895Z
Link: CVE-2026-44279
Updated: 2026-05-12T19:02:31.790Z
Status : Analyzed
Published: 2026-05-12T18:17:30.330
Modified: 2026-06-17T10:50:26.130
Link: CVE-2026-44279
No data.
OpenCVE Enrichment
Updated: 2026-06-26T09:30:16Z