FG-IR-21-091: Debug commands allow memory manipulation
A debug functionality in FortiGate may allow a privileged user to execute unauthorized code or commands via specificchains of print str and cmd mem cli commands to, respectively, read and write hexadecimal values to any memory address.
Affected Software
Event History
Frequently Asked Questions
What is the severity of FG-IR-21-091?
The FG-IR-21-091 vulnerability has been classified with a high severity due to its potential to allow privileged users to execute unauthorized commands.
How do I fix FG-IR-21-091?
To fix FG-IR-21-091, apply the latest security patches provided by Fortinet for the FortiGate product.
Who is affected by FG-IR-21-091?
FG-IR-21-091 affects Fortinet FortiGate devices that have debug functionality enabled.
What are the potential impacts of FG-IR-21-091?
The potential impacts of FG-IR-21-091 include unauthorized access to sensitive memory areas and potential execution of arbitrary code.
Is FG-IR-21-091 a remote vulnerability?
No, FG-IR-21-091 is not a remote vulnerability; it requires a privileged user to exploit the debug functionality.