High
CVE-2022-35843
FortiOS and FortiProxy could allow a remote attacker to bypass security restrictions, caused by an authentication bypass by assumed-immutable data flaw in the SSH login component. By sending a specially-crafted Access-Challenge response from the Radius server, an attacker could exploit this vulnerability to login into the device.
Security Bypass
Fortinet
Refer to Fortinet Security Advisory for patch, upgrade or suggested workaround information.