CVE-2021-32594
04.08.2021, 14:15
An unrestricted file upload vulnerability in the web interface of FortiPortal 6.0.0 through 6.0.4, 5.3.0 through 5.3.5, 5.2.0 through 5.2.5, and 4.2.2 and earlier may allow a low-privileged user to potentially tamper with the underlying system's files via the upload of specifically crafted files.Enginsight
Vendor | Product | Version |
---|---|---|
fortinet | fortiportal | 4.0.0 ≤ 𝑥 ≤ 4.0.4 |
fortinet | fortiportal | 4.1.0 ≤ 𝑥 ≤ 4.1.2 |
fortinet | fortiportal | 4.2.0 ≤ 𝑥 ≤ 4.2.4 |
fortinet | fortiportal | 5.0.0 ≤ 𝑥 ≤ 5.0.3 |
fortinet | fortiportal | 5.1.0 ≤ 𝑥 ≤ 5.1.2 |
fortinet | fortiportal | 5.2.0 ≤ 𝑥 < 5.2.6 |
fortinet | fortiportal | 5.3.0 ≤ 𝑥 < 5.3.6 |
fortinet | fortiportal | 6.0.0 ≤ 𝑥 < 6.0.5 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration