A incorrect permission assignment for critical resource in Fortinet FortiNAC version 9.2.0, version 9.1.3 and below, version 8.8.9 and below allows attacker to gain higher privileges via the access to sensitive system data.
References
Link | Resource |
---|---|
https://fortiguard.com/advisory/FG-IR-21-178 | Vendor Advisory |
https://github.com/orangecertcc/security-research/security/advisories/GHSA-8wx4-g5p9-348h | Exploit Third Party Advisory |
https://fortiguard.com/advisory/FG-IR-21-178 | Vendor Advisory |
https://github.com/orangecertcc/security-research/security/advisories/GHSA-8wx4-g5p9-348h | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 06:28
Type | Values Removed | Values Added |
---|---|---|
References | () https://fortiguard.com/advisory/FG-IR-21-178 - Vendor Advisory | |
References | () https://github.com/orangecertcc/security-research/security/advisories/GHSA-8wx4-g5p9-348h - Exploit, Third Party Advisory |
Information
Published : 2021-12-09 10:15
Updated : 2024-11-21 06:28
NVD link : CVE-2021-43065
Mitre link : CVE-2021-43065
CVE.ORG link : CVE-2021-43065
JSON object : View
Products Affected
fortinet
- fortinac
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource