CVE-2016-4968
mediumCVSS v3 Base Score
6.5
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
3.5%
Exploitation probability in 30 days
Top 12% most likely to be exploited
Attack Characteristics
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Confidentiality
High
Integrity
None
Availability
None
Published: September 21, 2016 (3521 days ago)
Last Modified: May 6, 2026
Vendor: Fortinet
Source: NVD
Vulnerability Report
Generated by CyberWatcher
Description
The linkreport/tmp/admin_global page in Fortinet FortiWan (formerly AscernLink) before 4.2.5 allows remote authenticated users to discover administrator cookies via a GET request.
CWE
CWE-200Affected Products
fortinet fortiwan