← Back

CVE-2016-4573

nvd nist
Published: Sep 9, 2016Modified: May 6, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

Fortinet FortiSwitch FSW-108D-POE, FSW-124D, FSW-124D-POE, FSW-224D-POE, FSW-224D-FPOE, FSW-248D-POE, FSW-248D-FPOE, FSW-424D, FSW-424D-POE, FSW-424D-FPOE, FSW-448D, FSW-448D-POE, FSW-448D-FPOE, FSW-524D, FSW-524D-FPOE, FSW-548D, FSW-548D-FPOE, FSW-1024D, FSW-1048D, FSW-3032D, and FSW-R-112D-POE models, when in FortiLink managed mode and upgraded to 3.4.1, might allow remote attackers to bypass authentication and gain administrative access via an empty password for the rest_admin account.

Affected (1)

1 product
Fortiswitch
Configuration A
1 vulnerable · 21 platform
Vulnerable SoftwareAffected Versions
Version 3.4.1
Running on/withPlatform Versions
Fortinet
Fsw 1024d
All versions
Fortinet
Fsw 1048d
All versions
Fortinet
Fsw 108d Poe
All versions
Fortinet
Fsw 124d
All versions
Fortinet
Fsw 124d Poe
All versions
Fortinet
Fsw 224d Fpoe
All versions
Fortinet
Fsw 224d Poe
All versions
Fortinet
Fsw 248d Fpoe
All versions
Fortinet
Fsw 248d Poe
All versions
Fortinet
Fsw 3032d
All versions
Fortinet
Fsw 424d
All versions
Fortinet
Fsw 424d Fpoe
All versions
Fortinet
Fsw 424d Poe
All versions
Fortinet
Fsw 448d
All versions
Fortinet
Fsw 448d Fpoe
All versions
Fortinet
Fsw 448d Poe
All versions
Fortinet
Fsw 524d
All versions
Fortinet
Fsw 524d Fpoe
All versions
Fortinet
Fsw 548d
All versions
Fortinet
Fsw 548d Fpoe
All versions
Fortinet
Fsw R 112d Poe
All versions

Related CWEs

References (6)

Timeline

No history available yet.