9.4
CVSSv2

CVE-2016-8491

Published: 01/02/2017 Updated: 24/02/2017
CVSS v2 Base Score: 9.4 | Impact Score: 9.2 | Exploitability Score: 10
CVSS v3 Base Score: 9.1 | Impact Score: 5.2 | Exploitability Score: 3.9
VMScore: 837
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:N

Vulnerability Summary

The presence of a hardcoded account named 'core' in Fortinet FortiWLC allows malicious users to gain unauthorized read/write access via a remote shell.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fortinet fortiwlc 8.2-4-0

fortinet fortiwlc 7.0-9-1

fortinet fortiwlc 7.0-10-0

fortinet fortiwlc 8.1-2-0

fortinet fortiwlc 8.1-3-2