A incorrect permission assignment for critical resource in Fortinet FortiNAC version 9.2.0, version 9.1.3 and below, version 8.8.9 and below allows attacker to gain higher privileges via the access to sensitive system data.
2021-12-09T10:15:11.847
2024-11-21T06:28:37.820
Modified
CVSSv3.1: 7.8 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | fortinet | fortinac | < 8.8.10 | Yes |
Application | fortinet | fortinac | < 9.1.4 | Yes |
Application | fortinet | fortinac | 9.2.0 | Yes |