CVE-2016-4965

Publication date

2016-09-21 14:00:00

Family

mitre

State

PUBLISHED

Description

Fortinet FortiWan (formerly AscernLink) before 4.2.5 allows remote authenticated users with access to the nslookup functionality to execute arbitrary commands with root privileges via the graph parameter to diagnosis_control.php.