CVE-2017-7341: OS Command Injection
An OS Command Injection vulnerability in Fortinet FortiWLC 6.1-2 through 6.1-5, 7.0-7 through 7.0-10, 8.0 through 8.2, and 8.3.0 through 8.3.2 file management AP script download webUI page allows an authenticated admin user to execute arbitrary system console commands via crafted HTTP requests.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-7341?
CVE-2017-7341 has a moderate severity rating due to its potential for OS Command Injection that can allow authenticated users to execute arbitrary commands.
How do I fix CVE-2017-7341?
To address CVE-2017-7341, update your Fortinet FortiWLC software to the latest patched version that is not vulnerable.
Who is affected by CVE-2017-7341?
CVE-2017-7341 affects Fortinet FortiWLC versions from 6.1-2 to 6.1-5, 7.0-7 to 7.0-10, and 8.0 to 8.3.2.
What type of vulnerability is CVE-2017-7341?
CVE-2017-7341 is classified as an OS Command Injection vulnerability.
Can CVE-2017-7341 be exploited remotely?
CVE-2017-7341 can be exploited by authenticated admin users through crafted HTTP requests, allowing remote execution of commands.