Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An improper access control (CWE-284) vulnerability in FortiWLC version 8.6.0, version 8.5.3 and below, version 8.4.8 and below, version 8.3.3 and below, version 8.2.7 to 8.2.4, version 8.1.3 may allow an unauthenticated and remote attacker to access certain areas of the web management CGI functionality by just specifying the correct URL. The vulnerability applies only to limited CGI resources and might allow the unauthorized party to access configuration details.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
访问控制不恰当
Vulnerability Title
FortiWLC 访问控制错误漏洞
Vulnerability Description
Fortinet FortiWLC是美国飞塔(Fortinet)公司的一款无线局域网控制器。 FortiWLC 存在安全漏洞,该漏洞源于访问限制不当。以下产品及版本受到影响:FortiWLC: 8.5.0, 8.5.1, 8.5.2, 8.5.3, 8.6.0。
CVSS Information
N/A
Vulnerability Type
N/A