CVE-2017-7341: Fortinet Fortiwlc

High severity, CVSS 7.2. EPSS: 3.9% chance of exploitation in the next 30 days.

An OS Command Injection vulnerability in Fortinet FortiWLC 6.1-2 through 6.1-5, 7.0-7 through 7.0-10, 8.0 through 8.2, and 8.3.0 through 8.3.2 file management AP script download webUI page allows an authenticated admin user to execute arbitrary system console commands via crafted HTTP requests.

Affected products

  • Fortinet Fortiwlc: from 6.1-2, up to and including 6.1-5; from 7.0-7, up to and including 7.0-10; from 8.0, up to and including 8.2; from 8.3.0, up to and including 8.3.2

Published 2017-10-26. Last modified 2026-06-17.