CVE-2021-26093: High severity fortinet fortiwlc vulnerability
Published Dec 19, 2024
·Updated
An access of uninitialized pointer (CWE-824) vulnerability in FortiWLC versions 8.6.0, 8.5.3 and earlier may allow a local and authenticated attacker to crash the access point being managed by the controller by executing a crafted CLI command.
Affected Software
2 affected components
Fortinet FortiWLC>=8.5.3<8.6.0
Fortinet FortiWLC>=8.0.6<8.6.3
Remediation
Information
Please upgrade to FortiWLC version 8.6.3 or above.
Event History
Dec 19, 2024
CVE Published
via MITRE·07:47 AM
Data Sourced
via MITRE·07:47 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-26093?
CVE-2021-26093 is classified as a high severity vulnerability due to its potential to crash managed access points.
2
How do I fix CVE-2021-26093?
To mitigate CVE-2021-26093, you should update to FortiWLC version 8.6.3 or later.
3
Who is affected by CVE-2021-26093?
CVE-2021-26093 affects users of FortiWLC versions 8.6.0, 8.5.3, and earlier.
4
Can CVE-2021-26093 be exploited remotely?
CVE-2021-26093 requires local and authenticated access, so it cannot be exploited remotely.
5
What type of vulnerability is CVE-2021-26093?
CVE-2021-26093 is an access of uninitialized pointer vulnerability.