VYPR
High severity8.1NVD Advisory· Published Apr 6, 2022· Updated Jun 17, 2026

CVE-2021-26112

CVE-2021-26112

Description

Multiple stack-based buffer overflow vulnerabilities [CWE-121] both in network daemons and in the command line interpreter of FortiWAN before 4.5.9 may allow an unauthenticated attacker to potentially corrupt control data in memory and execute arbitrary code via specifically crafted requests.

Affected products

3
  • Fortinet/Fortiwan2 versions
    cpe:2.3:a:fortinet:fortiwan:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:fortinet:fortiwan:*:*:*:*:*:*:*:*range: <=4.5.8
    • (no CPE)range: <4.5.9
  • Fortinet/Fortinetcpe-rescue
    Range: FortiWAN before 4.5.9

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.