CVE-2017-7336: Fortinet Fortiwlm

Critical severity, CVSS 9.8. EPSS: 2.5% chance of exploitation in the next 30 days.

A hard-coded account named 'upgrade' in Fortinet FortiWLM 8.3.0 and lower versions allows a remote attacker to log-in and execute commands with 'upgrade' account privileges.

Affected products

  • Fortinet Fortiwlm: up to and including 8.3.0

Published 2017-07-22. Last modified 2026-06-17.