Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-84251
HistoryNov 03, 2021 - 12:00 a.m.

Fortinet FortiPortal has an unspecified vulnerability (CNVD-2021-84251)

2021-11-0300:00:00
China National Vulnerability Database
www.cnvd.org.cn
8
fortinet fortiportal
xml response parser
vulnerability
denial of service
arbitrary files
cnvd-2021-84251

EPSS

0.001

Percentile

42.8%

Fortinet FortiPortal is an advanced, feature-rich hosted security analysis and management support tool for Fortinet’s FortiGate, FortiWiFi and FortiAP product lines, available as a virtual machine for use by MSPs. The vulnerability stems from an improper restriction of the XML external entity reference vulnerability in the XML response parser, which can be exploited by an attacker to trigger a denial of service or read arbitrary files from the underlying file system.

EPSS

0.001

Percentile

42.8%

Related for CNVD-2021-84251