CVE-2021-26112
CVE-2021-26112
Vexday Risk Score
21Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 8.1EPSS 1.6%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
06 Apr 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Multiple stack-based buffer overflow vulnerabilities [CWE-121] both in network daemons and in the command line interpreter of FortiWAN before 4.5.9 may allow an unauthenticated attacker to potentially corrupt control data in memory and execute arbitrary code via specifically crafted requests.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H/E:P/RL:U/RC:C
Affected products
Fortinet · Fortinet FortiWANWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →