ZeroHour

CVE-2021-36186

CVSS 3.1
9.8 critical
EPSS
2%p75
Published
()
Modified
Description

A stack-based buffer overflow in Fortinet FortiWeb version 6.4.0, version 6.3.15 and below, 6.2.5 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests

Vendors
fortinet
Products
fortiweb
Weakness
CWE-787
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.