The presence of a hardcoded account named 'core' in Fortinet FortiWLC allows attackers to gain unauthorized read/write access via a remote shell.
References
Link Resource
http://www.securityfocus.com/bid/94186 Third Party Advisory VDB Entry
https://fortiguard.com/advisory/FG-IR-16-065 Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: fortinet

Published: 2017-02-01T17:00:00

Updated: 2017-02-02T10:57:01

Reserved: 2016-10-07T00:00:00


Link: CVE-2016-8491

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2017-02-01T17:59:00.153

Modified: 2017-02-24T18:47:36.947


Link: CVE-2016-8491

JSON object: View

cve-icon Redhat Information

No data.

CWE