Fortinet FortiAP是美国飞塔(Fortinet)公司的一款用于管理无线接入点设备的控制器。 Fortinet FortiAP-C 存在操作系统命令注入漏洞,该漏洞源于在FortiAP-C控制台中,使用的特殊元素缺少有效的转义和过滤,可能会允许经过身份验证的攻击者利用该漏洞通过运行带有特定参数的CLI命令来执行未经授权的命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Fortinet | Fortinet FortiAP-C | FortiAP-C 5.4.0 through 5.4.3, 5.2.0 through 5.2.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-43070 | 5.4 MEDIUM | Fortinet FortiWLM 路径遍历漏洞 |
| CVE-2021-44166 | 4.1 MEDIUM | Fortinet FortiToken Mobile 访问控制错误漏洞 |
| CVE-2022-22303 | 2.8 LOW | Fortinet FortiGate 信息泄露漏洞 |
No comments yet