An improper input validation in FortiAP-S/W2 6.2.0 to 6.2.2, 6.0.5 and below, FortiAP-U 6.0.1 and below CLI admin console may allow unauthorized administrators to overwrite system files via specially crafted tcpdump commands in the CLI.
2020-06-01T19:15:09.800
2024-11-21T04:29:18.117
Modified
CVSSv3.1: 6.5 (MEDIUM)
AV:N/AC:L/Au:S/C:N/I:C/A:C
8.0
9.2
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | fortinet | fortiap-s | ≤ 6.0.5 | Yes |
Operating System | fortinet | fortiap-s | ≤ 6.2.2 | Yes |
Hardware | fortinet | fortiap-s | - | No |
Operating System | fortinet | fortiap-w2 | ≤ 6.0.5 | Yes |
Operating System | fortinet | fortiap-w2 | ≤ 6.2.2 | Yes |
Operating System | fortinet | fortiap-w2 | - | No |
Operating System | fortinet | fortiap-u | ≤ 6.0.1 | Yes |
Hardware | fortinet | fortiap-u | - | No |