CVE-2021-43065 Information
Jun 07, 2022
cve
Description
A incorrect permission assignment for critical resource in Fortinet FortiNAC version 9.2.0 version 9.1.3 and below version 8.8.9 and below allows attacker to gain higher privileges via the access to sensitive system data.
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Reference
https://fortiguard.com/advisory/FG-IR-21-178 https://github.com/orangecertcc/security-research/security/advisories/GHSA-8wx4-g5p9-348h
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
7.8
Share on: