Vulnerabilities > CVE-2021-26107 - Unspecified vulnerability in Fortinet Fortimanager 6.4.4/6.4.5
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
NONE Integrity impact
LOW Availability impact
NONE Summary
An improper access control vulnerability [CWE-284] in FortiManager versions 6.4.4 and 6.4.5 may allow an authenticated attacker with a restricted user profile to modify the VPN tunnel status of other VDOMs using VPN Manager.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |