Critical severity9.8NVD Advisory· Published Nov 29, 2017· Updated Jun 17, 2026
CVE-2017-14189
CVE-2017-14189
Description
An improper access control vulnerability in Fortinet FortiWebManager 5.8.0 allows anyone that can access the admin webUI to successfully log-in regardless the provided password.
Affected products
3cpe:2.3:a:fortinet:fortiweb_manager:5.8.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:fortinet:fortiweb_manager:5.8.0:*:*:*:*:*:*:*
- (no CPE)range: = 5.8.0
- Fortinet, Inc./FortiWebManagerv5Range: 5.8.0
Patches
Vulnerability mechanics
References
3- www.securityfocus.com/bid/101953nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1039892nvdThird Party AdvisoryVDB Entry
- fortiguard.com/advisory/FG-IR-17-248nvdVendor Advisory
News mentions
0No linked articles in our index yet.