We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2021-42758



Assignerfortinet
Reserved2021-10-20
Published2021-12-08
Updated2024-10-25

Description

An improper access control vulnerability [CWE-284] in FortiWLC 8.6.1 and below may allow an authenticated and remote attacker with low privileges to execute any command as an admin user with full access rights via bypassing the GUI restrictions.



HIGH: 8.8CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:U/RC:R

Product status

FortiWLC 8.6.1 and below
affected

References

https://fortiguard.com/advisory/FG-IR-21-200

cve.org CVE-2021-42758

nvd.nist.gov CVE-2021-42758

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2021-42758
Support options

Helpdesk Telegram

Subscribe to our newsletter to learn more about our work.