← back
CVE-2021-36177

CVE-2021-36177

CVSS 4.2 MEDIUMEPSS 0.3%
An improper access control vulnerability [CWE-284] in FortiAuthenticator HA service 6.3.2 and below, 6.2.x, 6.1.x, 6.0.x may allow an attacker on the same vlan as the HA management interface to make an unauthenticated direct connection to the FAC's database.
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N/E:F/RL:U/RC:C
Affected products
n/a · n/a

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →