ZeroHour

CVE-2021-41027

CVSS 3.1
7.8 high
EPSS
<1%p5
Published
()
Modified
Description

A stack-based buffer overflow in Fortinet FortiWeb version 6.4.1 and 6.4.0, allows an authenticated attacker to execute unauthorized code or commands via crafted certificates loaded into the device.

Vendors
fortinet
Products
fortiweb
Weakness
CWE-787
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.