CVE-2021-41021
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
08/12/2021
Last modified:
12/07/2022
Description
A privilege escalation vulnerability in FortiNAC versions 8.8.8 and below and 9.1.2 and below may allow an admin user to escalate the privileges to root via the sudo command.
Impact
Base Score 3.x
6.70
Severity 3.x
MEDIUM
Base Score 2.0
7.20
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:fortinet:fortinac:8.8.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:fortinet:fortinac:8.8.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:fortinet:fortinac:8.8.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:fortinet:fortinac:8.8.3:*:*:*:*:*:*:* | ||
cpe:2.3:a:fortinet:fortinac:8.8.4:*:*:*:*:*:*:* | ||
cpe:2.3:a:fortinet:fortinac:8.8.5:*:*:*:*:*:*:* | ||
cpe:2.3:a:fortinet:fortinac:8.8.6:*:*:*:*:*:*:* | ||
cpe:2.3:a:fortinet:fortinac:8.8.7:*:*:*:*:*:*:* | ||
cpe:2.3:a:fortinet:fortinac:8.8.8:*:*:*:*:*:*:* | ||
cpe:2.3:a:fortinet:fortinac:9.1.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:fortinet:fortinac:9.1.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:fortinet:fortinac:9.1.2:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page