CVE-2015-1458: Fortinet Fortiauthenticator

Medium severity, CVSS 6.9. EPSS: 0.4% chance of exploitation in the next 30 days.

Fortinet FortiAuthenticator 3.0.0 allows local users to bypass intended restrictions and gain privileges by creating /tmp/privexec/dbgcore_enable_shell_access and executing the "shell" command.

Affected products

  • Fortinet Fortiauthenticator: version 3.0.0 only

Published 2015-02-03. Last modified 2026-06-17.