CVE-2019-15709

An improper input validation in FortiAP-S/W2 6.2.0 to 6.2.2, 6.0.5 and below, FortiAP-U 6.0.1 and below CLI admin console may allow unauthorized administrators to overwrite system files via specially crafted tcpdump commands in the CLI.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.5 MEDIUM
NETWORK
LOW
HIGH
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
fortinetCNA
---
---
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 26%
VendorProductVersion
fortinetfortiap-s
𝑥
≤ 6.0.5
fortinetfortiap-s
6.2.0 ≤
𝑥
≤ 6.2.2
fortinetfortiap-w2
𝑥
≤ 6.0.5
fortinetfortiap-w2
6.2.0 ≤
𝑥
≤ 6.2.2
fortinetfortiap-u
𝑥
≤ 6.0.1
𝑥
= Vulnerable software versions