Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The FTP component in FortiGate 2.8 running FortiOS 2.8MR10 and v3beta, and other versions before 3.0 MR1, allows remote attackers to bypass the Fortinet FTP anti-virus engine by sending a STOR command and uploading a file before the FTP server response has been sent, as demonstrated using LFTP.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Fortinet FortiGate反病毒引擎绕过检测漏洞
Vulnerability Description
Fortinet FortiGate是美国飞塔(Fortinet)公司开发的一套网络安全平台。该平台提供防火墙、防病毒和入侵防御(IPS)、应用控制、反垃圾邮件、无线控制器和广域网加速等功能。 Fortinet FortiGate的FTP组件不能正确对文件进行过滤检查。远程攻击者可通过发送STOR命令绕过Fortinet FTP反病毒引擎,并在FTP服务器响应发送之前上传任意文件。
CVSS Information
N/A
Vulnerability Type
N/A