PT-2021-2813 · Fortinet · Fortiwan
Published
2021-04-27
·
Updated
2025-01-21
·
CVE-2021-26102
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
FortiWAN versions 4.5.7 and below
FortiWAN version 4.4 and all versions below
Description
The issue is related to a relative path traversal vulnerability that can be exploited by a remote attacker to impact the confidentiality, integrity, and availability of protected information. This can be achieved by sending a crafted POST request, allowing the attacker to delete files on the system. Specifically, deleting certain configuration files will reset the Admin password to its default value.
Recommendations
For FortiWAN versions 4.5.7 and below, consider disabling the ability to send crafted POST requests until a patch is available.
For FortiWAN version 4.4 and all versions below, restrict access to the system to minimize the risk of exploitation.
Avoid using the vulnerable relative path traversal functionality until the issue is resolved.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Path traversal
Relative Path Traversal
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Fortiwan