CVE-2021-41021: High severity fortinet fortinac vulnerability
Published Dec 8, 2021
·Updated
A privilege escalation vulnerability in FortiNAC versions 8.8.8 and below and 9.1.2 and below may allow an admin user to escalate the privileges to root via the sudo command.
Affected Software
12 affected components
Fortinet FortiNAC=8.8.0
Fortinet FortiNAC=8.8.1
Fortinet FortiNAC=8.8.2
Fortinet FortiNAC=8.8.3
Fortinet FortiNAC=8.8.4
Fortinet FortiNAC=8.8.5
Fortinet FortiNAC=8.8.6
Fortinet FortiNAC=8.8.7
Fortinet FortiNAC=8.8.8
Fortinet FortiNAC=9.1.0
Fortinet FortiNAC=9.1.1
Fortinet FortiNAC=9.1.2
Remediation
Patch Available
Event History
Dec 8, 2021
CVE Published
via MITRE·05:48 PM
Data Sourced
via MITRE·05:48 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-41021?
CVE-2021-41021 is classified as a privilege escalation vulnerability.
2
How do I fix CVE-2021-41021?
To fix CVE-2021-41021, update FortiNAC to version 8.8.9 or 9.1.3 or later.
3
What versions are affected by CVE-2021-41021?
CVE-2021-41021 affects FortiNAC versions 8.8.8 and below, and 9.1.2 and below.
4
Can an admin user exploit CVE-2021-41021?
Yes, an admin user can exploit CVE-2021-41021 to escalate privileges to root.
5
What is the impact of CVE-2021-41021?
The impact of CVE-2021-41021 could allow unauthorized access and control over the system by escalating privileges.