CVE-2016-4965
21.09.2016, 14:25
Fortinet FortiWan (formerly AscernLink) before 4.2.5 allows remote authenticated users with access to the nslookup functionality to execute arbitrary commands with root privileges via the graph parameter to diagnosis_control.php.
Vendor | Product | Version |
---|---|---|
fortinet | fortiwan | 𝑥 ≤ 4.2.4 |
𝑥
= Vulnerable software versions
References