Security Advisory

CVE-2021-36167

4.3
MEDIUM

Vulnerability Description

An improper authorization vulnerabiltiy [CWE-285] in FortiClient Windows versions 7.0.0 and 6.4.6 and below and 6.2.8 and below may allow an unauthenticated attacker to bypass the webfilter control via modifying the session-id paramater.
Published Date December 9, 2021
Official Source NIST NVD Advisory