CVE-2016-4965

HIGH

FortiWan < 4.2.5 - Authenticated Remote Code Execution via nslookup graph parameter

Title source: llm
STIX 2.1

Description

Fortinet FortiWan (formerly AscernLink) before 4.2.5 allows remote authenticated users with access to the nslookup functionality to execute arbitrary commands with root privileges via the graph parameter to diagnosis_control.php.

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/92779
Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert-vn
https://www.kb.cert.org/vuls/id/724487

Scores

CVSS v3 8.8
EPSS 0.0770
EPSS Percentile 92.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-78
Status published
Products (1)
fortinet/fortiwan < 4.2.4
Published Sep 21, 2016
Tracked Since Feb 18, 2026