Fiche vulnérabilité
CVE-2021-26116 : faille élevée fortinet fortiauthenticator (CVSS 8.8)
Description
An improper neutralization of special elements used in an OS command vulnerability in the command line interpreter of FortiAuthenticator before 6.3.1 may allow an authenticated attacker to execute unauthorized commands via specifically crafted arguments to existing commands.
En bref
- Sévérité
- Élevée (CVSS 8.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 6 avr. 2022
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- fortinet fortiauthenticator