We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2021-42758



Description

An improper access control vulnerability [CWE-284] in FortiWLC 8.6.1 and below may allow an authenticated and remote attacker with low privileges to execute any command as an admin user with full access rights via bypassing the GUI restrictions.

Reserved 2021-10-20 | Published 2021-12-08 | Updated 2024-10-25 | Assigner fortinet


HIGH: 8.8CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:U/RC:R

Problem types

Improper access control

Product status

FortiWLC 8.6.1 and below
affected

References

fortiguard.com/advisory/FG-IR-21-200

cve.org (CVE-2021-42758)

nvd.nist.gov (CVE-2021-42758)

Download JSON

Share this page
https://cve.threatint.eu/CVE/CVE-2021-42758

Support options

Helpdesk Chat, Email, Knowledgebase