Security Advisory

CVE-2021-36181

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-11-02 17:22:57
Last updated 2024-10-25 13:48:42
Assigner fortinet
State PUBLISHED

Description

A concurrent execution using shared resource with improper Synchronization vulnerability (Race Condition) in the customer database interface of FortiPortal before 6.0.6 may allow an authenticated, low-privilege user to bring the underlying database data into an inconsistent state via specific coordination of web requests.