CVE-2019-15709

EUVD-2019-6645
An improper input validation in FortiAP-S/W2 6.2.0 to 6.2.2, 6.0.5 and below, FortiAP-U 6.0.1 and below CLI admin console may allow unauthorized administrators to overwrite system files via specially crafted tcpdump commands in the CLI.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.5 MEDIUM
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 67%
Affected Products (NVD)
VendorProductVersion
fortinetfortiap-s
𝑥
≤ 6.0.5
fortinetfortiap-s
6.2.0 ≤
𝑥
≤ 6.2.2
fortinetfortiap-w2
𝑥
≤ 6.0.5
fortinetfortiap-w2
6.2.0 ≤
𝑥
≤ 6.2.2
fortinetfortiap-u
𝑥
≤ 6.0.1
𝑥
= Vulnerable software versions