First published: Tue Aug 03 2021(Updated: )
An uncontrolled resource consumption (denial of service) vulnerability in FortiSandbox and FortiAuthenticator login modules may allow an unauthenticated attacker to bring the device into an unresponsive state via specifically-crafted long request parameters.
Affected Software | Affected Version | How to fix |
---|---|---|
Fortinet FortiSandbox Firmware | ||
Fortinet FortiAuthenticator |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of FG-IR-20-170 is considered high due to its potential to enable denial of service attacks.
To fix FG-IR-20-170, update to the latest firmware version of FortiSandbox or FortiAuthenticator where the vulnerability is patched.
The devices affected by FG-IR-20-170 include FortiSandbox and FortiAuthenticator.
FG-IR-20-170 can be exploited by an unauthenticated attacker, making it particularly critical to address.
The potential impacts of FG-IR-20-170 include the device becoming unresponsive, resulting in denial of service.