Loading HuntDB...

Fortinet FortiOS Arbitrary File Download

Added Dec. 10, 2021 Due Dec. 24, 2021 CVE-2021-44168
Overdue Fortinet / FortiOS CWE-494

Description

Fortinet FortiOS "execute restore src-vis" downloads code without integrity checking, allowing an attacker to arbitrarily download files.

Required Action

Apply updates per vendor instructions.

References

Additional Information

Catalog Version
2025.01.24
Catalog Released
Jan. 24, 2025
Days Until Due
0 days
Last Updated
4 months, 3 weeks ago