CVE-2021-36173
21Vexday Risk Score
Sem sinal de exploração. Nenhum artefato público de exploração conhecido até agora.
ssvc Trackcvss 8epss 1.4%
probabilidade de exploração
1.4%top 28% das CVEs
exploração observada
nãonenhuma fonte reporta
A heap-based buffer overflow in the firmware signature verification function of FortiOS versions 7.0.1, 7.0.0, 6.4.0 through 6.4.6, 6.2.0 through 6.2.9, and 6.0.0 through 6.0.13 may allow an attacker to execute arbitrary code via specially crafted installation images.
CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:P/RL:W/RC:C
Produtos afetados
Fortinet · Fortinet FortiOSReferências
https://fortiguard.com/advisory/FG-IR-21-115