FortiOS 5.2.3, when configured to use High Availability (HA) and the dedicated management interface is enabled, does not require authentication for access to the ZebOS shell on the HA dedicated management interface, which allows remote attackers to obtain shell access via unspecified vectors.
                
            References
                    Configurations
                    History
                    No history.
Information
                Published : 2015-10-15 20:59
Updated : 2025-04-12 10:46
NVD link : CVE-2015-7361
Mitre link : CVE-2015-7361
CVE.ORG link : CVE-2015-7361
JSON object : View
Products Affected
                fortinet
- fortios
CWE
                
                    
                        
                        CWE-287
                        
            Improper Authentication
