CVE-2021-36185
published 2021-11-02CVE-2021-36185: A improper neutralization of special elements used in an OS command ('OS Command Injection') in Fortinet FortiWLM version 8.6.1 and below allows attacker to…
PriorityP262high8.8CVSS 3.1
AVNACLPRLUINSUCHIHAH
EPSS
1.90%
77.2th percentile
A improper neutralization of special elements used in an OS command ('OS Command Injection') in Fortinet FortiWLM version 8.6.1 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | fortinet | — | — |
| fortinet | fortinet_fortiwlm | — | — |
| fortinet | fortiwlm | — | — |
| fortinet | fortiwlm | 8.2.2 – 8.6.1 | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Vulnerability class is OS Command Injection (CWE-78) in Fortinet FortiWLM; monitor for crafted HTTP requests targeting FortiWLM endpoints that include shell metacharacters or command separators in HTTP parameters ↗
- →Scope detection to FortiWLM version 8.6.1 and below; any FortiWLM instance at or below this version should be treated as vulnerable and monitored for anomalous HTTP request patterns ↗
- ·No specific endpoint, parameter name, payload pattern, or PoC details are disclosed in the available sources; detection must rely on generic OS command injection heuristics against FortiWLM HTTP interfaces until further technical details are published ↗
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.06.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-m7vx-ch4r-95hf: A improper neutralization of special elements used in an OS command ('OS Command Injection') in Fortinet FortiWLM version 8
ghsa_unreviewed·2022-05-24
CVE-2021-36185 [HIGH] CWE-78 GHSA-m7vx-ch4r-95hf: A improper neutralization of special elements used in an OS command ('OS Command Injection') in Fortinet FortiWLM version 8
A improper neutralization of special elements used in an OS command ('OS Command Injection') in Fortinet FortiWLM version 8.6.1 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests.
Fortinet
A improper neutralization of special elements used in an OS command ('OS Command Injection') in Fortinet FortiWLM versio...
vendor_fortinet·2021-11-02·CVSS 8.8
CVE-2021-36185 [HIGH] CWE-78 A improper neutralization of special elements used in an OS command ('OS Command Injection') in Fortinet FortiWLM versio...
FG-IR-21-110: A improper neutralization of special elements used in an OS command ('OS Command Injection') in Fortinet FortiWLM versio...
A improper neutralization of special elements used in an OS command ('OS Command Injection') in Fortinet FortiWLM version 8.6.1 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests.
CVEs: CVE-2021-36185
CWEs: CWE-78
CVSS: 8.8 (high)
Affected products: FortiWLM, FortiWlm, Fortinet
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2021-11-02
Published