← back
CVE-2021-26114

CVE-2021-26114

CVSS 9.8 CRITICALEPSS 1.5%
Vexday Risk Score
28Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 9.8EPSS 1.5%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
06 Apr 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Multiple improper neutralization of special elements used in an SQL command vulnerabilities in FortiWAN before 4.5.9 may allow an unauthenticated attacker to execute unauthorized code or commands via specifically crafted HTTP requests.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:F/RL:U/RC:C

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →