An improper input validation vulnerability in FortiClient for Linux 6.4.x before 6.4.3, FortiClient for Linux 6.2.x before 6.2.9 may allow an unauthenticated attacker to execute arbitrary code on the host operating system as root via tricking the user into connecting to a network with a malicious name.
References
Link | Resource |
---|---|
https://fortiguard.com/advisory/FG-IR-20-241 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: fortinet
Published: 2022-04-06T16:00:33
Updated: 2022-04-06T16:00:33
Reserved: 2021-01-04T00:00:00
Link: CVE-2021-22127
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-04-06T16:15:07.787
Modified: 2022-04-13T18:00:34.033
Link: CVE-2021-22127
JSON object: View
Redhat Information
No data.
CWE