First published: Wed Oct 05 2016(Updated: )
The rsyncd server in Fortinet FortiWLC 6.1-2-29 and earlier, 7.0-9-1, 7.0-10-0, 8.0-5-0, 8.1-2-0, and 8.2-4-0 has a hardcoded rsync account, which allows remote attackers to read or write to arbitrary files via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Fortinet FortiWLC | <=6.1-2-29 | |
Fortinet FortiWLC | =7.0-9-1 | |
Fortinet FortiWLC | =7.0-10-0 | |
Fortinet FortiWLC | =8.0-5-0 | |
Fortinet FortiWLC | =8.1-2-0 | |
Fortinet FortiWLC | =8.2-4-0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.