The linkreport/tmp/admin_global page in Fortinet FortiWan (formerly AscernLink) before 4.2.5 allows remote authenticated users to discover administrator cookies via a GET request.
- http://fortiguard.com/advisory/fortiwan-multiple-vulnerabilities
- https://www.kb.cert.org/vuls/id/724487
No PoCs found on GitHub currently.