Show filters
23 Total Results
Displaying 21-23 of 23
Sort by:
Attacker Value
Unknown
CVE-2021-36184
Disclosure Date: November 02, 2021 (last updated February 23, 2025)
A improper neutralization of Special Elements used in an SQL Command ('SQL Injection') in Fortinet FortiWLM version 8.6.1 and below allows attacker to disclosure device, users and database information via crafted HTTP requests.
0
Attacker Value
Unknown
CVE-2021-36185
Disclosure Date: November 02, 2021 (last updated February 23, 2025)
A improper neutralization of special elements used in an OS command ('OS Command Injection') in Fortinet FortiWLM version 8.6.1 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests.
0
Attacker Value
Unknown
CVE-2017-7336
Disclosure Date: July 22, 2017 (last updated November 26, 2024)
A hard-coded account named 'upgrade' in Fortinet FortiWLM 8.3.0 and lower versions allows a remote attacker to log-in and execute commands with 'upgrade' account privileges.
0