CVE-2021-36181
02.11.2021, 18:15
A concurrent execution using shared resource with improper Synchronization vulnerability ('Race Condition') in the customer database interface of FortiPortal before 6.0.6 may allow an authenticated, low-privilege user to bring the underlying database data into an inconsistent state via specific coordination of web requests.
Vendor | Product | Version |
---|---|---|
fortinet | fortiportal | 4.0.0 ≤ 𝑥 < 6.0.6 |
𝑥
= Vulnerable software versions