← Back

CVE-2021-26115

nvd nist
Published: Dec 19, 2024Modified: Jan 21, 2025

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

An OS command injection (CWE-78) vulnerability in FortiWAN version 4.5.7 and below Command Line Interface may allow a local, authenticated and unprivileged attacker to escalate their privileges to root via executing a specially-crafted command.An OS command injection (CWE-78) vulnerability in FortiWAN Command Line Interface may allow a local, authenticated and unprivileged attacker to escalate their privileges to root via executing a specially-crafted command.

Affected (1)

Products: Fortinet: Fortiwan
1 product
Fortiwan
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 4.5.8

References (1)

Source: psirt@fortinet.com
Vendor Advisory

Timeline

No history available yet.