Multiple vulnerabilities have been discovered in Fortinet FortiNAC, the most severe of which could allow for arbitrary code execution. FortiNAC is a network access control solution offered by Fortinet that manages network-wide access policies, gains visibility of devices and users, and secures the network against unauthorized access and threats. Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the context of the affected service account. Depending on the privileges associated with the service account an attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Service accounts that are configured to have fewer user rights on the system could be less impacted than those who operate with administrative user rights.
Multiple Vulnerabilities in Fortinet FortiNAC Could Allow for Arbitrary Code Execution
Read Time:38 Second