Lucene search

K
fortinetFortiGuard LabsFG-IR-21-056
HistoryJul 05, 2022 - 12:00 a.m.

FortiManager & FortiAnalyzer - Privilege escalation vulnerability

2022-07-0500:00:00
FortiGuard Labs
www.fortiguard.com
28
fortimanager
fortianalyzer
privilege escalation
vulnerability
cwe-268
incorrect permissions
restricted shell
executable files

EPSS

0

Percentile

12.6%

A privilege chaining vulnerability [CWE-268] in FortiManager and FortiAnalyzer may allow a local and authenticated attacker with a restricted shell to escalate their privileges to root due to incorrect permissions of some folders and executable files on the system.

EPSS

0

Percentile

12.6%

Related for FG-IR-21-056