In FortiBalancer 400, 1000, 2000 and 3000, a platform-specific remote access vulnerability has been discovered that may allow a remote user to gain privileged access to affected systems using SSH. The vulnerability is caused by a configuration error, and is not the result of an underlying SSH defect.
References
Link | Resource |
---|---|
https://fortiguard.com/advisory/FG-IR-14-010 | Mitigation Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
History
No history.
Information
Published : 2020-03-19 16:15
Updated : 2024-02-28 17:47
NVD link : CVE-2014-2721
Mitre link : CVE-2014-2721
CVE.ORG link : CVE-2014-2721
JSON object : View
Products Affected
fortinet
- fortibalancer_1000_firmware
- fortibalancer_1000
- fortibalancer_3000
- fortibalancer_2000_firmware
- fortibalancer_2000
- fortibalancer_3000_firmware
- fortibalancer_400_firmware
- fortibalancer_400
CWE
CWE-276
Incorrect Default Permissions