Beschreibung
Multiple serious vulnerabilities have been found in Fortinet FortiAuthenticator. Malicious users can exploit these vulnerabilities to gain privileges, obtain sensitive information, inject code and read arbitrary files.
Below is a complete list of vulnerabilities
- XSS vulnerability can be exploited remotely via a specially designed operation parameter;
- An unknown vulnerability can be exploited locally via manipulations with files and commands;
- Lack of login information emcapsulation can be exploited remotely via log reading and other unknown vectors.
Ursprüngliche Informationshinweise
CVE Liste
- CVE-2015-1457 critical
- CVE-2015-1458 critical
- CVE-2015-1459 critical
- CVE-2015-1455 critical
- CVE-2015-1456 critical
Mehr erfahren
Informieren Sie sich über die Statistiken der in Ihrer Region verbreiteten Sicherheitslücken statistics.securelist.com
Sie haben einen Fehler in der Beschreibung der Schwachstelle gefunden? Mitteilen!