CVE-2021-43205

An exposure of sensitive information to an unauthorized actor vulnerability [CWE-200] in FortiClient for Linux version 7.0.2 and below, 6.4.7 and below and 6.2.9 and below may allow an unauthenticated attacker to access the confighandler webserver via external binaries.
References
Link Resource
https://fortiguard.com/psirt/FG-IR-21-226 Patch Vendor Advisory
Configurations

Configuration 1

cpe:2.3:a:fortinet:forticlient:*:*:*:*:*:linux:*:*
cpe:2.3:a:fortinet:forticlient:*:*:*:*:*:linux:*:*
cpe:2.3:a:fortinet:forticlient:*:*:*:*:*:linux:*:*
cpe:2.3:a:fortinet:forticlient:6.4.7:*:*:*:*:linux:*:*
cpe:2.3:a:fortinet:forticlient:*:*:*:*:*:linux:*:*

Information

Published : 2022-04-06 10:15

Updated : 2022-04-13 08:07


NVD link : CVE-2021-43205

Mitre link : CVE-2021-43205

Products Affected
No products.
CWE