CVE-2021-36181

Publication date

2021-11-02 17:22:57

Family

fortinet

State

PUBLISHED

Description

A concurrent execution using shared resource with improper Synchronization vulnerability (Race Condition) in the customer database interface of FortiPortal before 6.0.6 may allow an authenticated, low-privilege user to bring the underlying database data into an inconsistent state via specific coordination of web requests.