CVE-2021-36185

Description

A improper neutralization of special elements used in an OS command (OS Command Injection) in Fortinet FortiWLM version 8.6.1 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests.

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
1.781

Associated Vulnerability

VulnerabilityOS Platform
Improper Neutralization of Special Elements used in an OS Command (OS Command Injection) Vulnerability (CVE-2021-36185)NCM

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234