Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An improper access control vulnerability [CWE-284] in FortiWLC 8.6.1 and below may allow an authenticated and remote attacker with low privileges to execute any command as an admin user with full access rights via bypassing the GUI restrictions.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
N/A
Vulnerability Title
Fortinet FortiWLC 访问控制错误漏洞
Vulnerability Description
Fortinet FortiWLC是美国飞塔(Fortinet)公司的一款无线局域网控制器。 Fortinet FortiWLC 中存在访问控制错误漏洞,该漏洞源于产品的GUI restrictions未对用户身份进行有效验证。攻击者可通过该漏洞执行任意命令。以下产品及版本受到影响:FortiWLC 8.6.1 版本及之前版本。
CVSS Information
N/A
Vulnerability Type
N/A