Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2021-32584


An improper access control (CWE-284) vulnerability in FortiWLC version 8.6.0, version 8.5.3 and below, version 8.4.8 and below, version 8.3.3 and below, version 8.2.7 to 8.2.4, version 8.1.3 may allow an unauthenticated and remote attacker to access certain areas of the web management CGI functionality by just specifying the correct URL. The vulnerability applies only to limited CGI resources and might allow the unauthorized party to access configuration details.


Published

2025-03-17T14:15:17.413

Last Modified

2025-07-24T20:17:07.543

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 5.3 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-284

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application fortinet fortiwlc < 8.5.4 Yes
Application fortinet fortiwlc 8.6.0 Yes

References