Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-12924 | An insufficient verification of data authenticity vulnerability (CWE-345) in the user interface of FortiProxy verison 2.0.3 and below, 1.2.11 and below and FortiGate verison 7.0.0, 6.4.6 and below, 6.2.9 and below of SSL VPN portal may allow a remote, unauthenticated attacker to conduct a cross-site request forgery (CSRF) attack . Only SSL VPN in web mode or full mode are impacted by this vulnerability. |
| Link | Providers |
|---|---|
| https://fortiguard.com/advisory/FG-IR-20-158 |
|
Fri, 25 Oct 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-10-25T13:41:21.796Z
Reserved: 2021-01-25T00:00:00.000Z
Link: CVE-2021-26103
Updated: 2024-08-03T20:19:19.361Z
Status : Modified
Published: 2021-12-08T12:15:07.677
Modified: 2024-11-21T05:55:52.177
Link: CVE-2021-26103
No data.
OpenCVE Enrichment
No data.
EUVD