Description
A concurrent execution using shared resource with improper synchronization ('race condition') in the command shell of FortiSandbox before 3.2.2 may allow an authenticated attacker to bring the system into an unresponsive state via specifically orchestrated sequences of commands.
References
https://fortiguard.com/advisory/FG-IR-20-185
Vendor Advisory
https://fortiguard.com/advisory/FG-IR-20-185
Vendor Advisory
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
6.3 · Medium
Information
Source identifier
Vulnerability status
Modified
Published
2021-07-09T17:15:08.000Z
4 years agoLast modified
2024-11-21T04:23:30.217Z
1 year ago