S4E just found a high top 10 tcp port service scan
critical·Product Based Web Vulnerabilities·Updated Dec 16, 2023

CVE-2021-3378 Scanner

Detects 'File Upload' vulnerability in FortiLogger affects v. 4.4.2.2.

Est. Time~15 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
0
Times Used
by S4E users
0
Assets Scanned
domains & IPs
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2021-3378
9.8
CVSS

FortiLogger 4.4.2.2 is affected by Arbitrary File Upload by sending a "Content-Type: image/png" header to Config/SaveUploadedHotspotLogoFile and then visiting Assets/temp/hotspot/img/logohotspot.asp.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 21, 2026View on NVD →
Detail

FortiLogger is a popular software used for logging and monitoring network data and security events. It provides comprehensive network security solutions to protect digital assets from cyber threats and unauthorized access. FortiLogger also offers real-time monitoring and alerts for suspicious activities, enabling IT teams to respond promptly to any security incident. Furthermore, it aids in IT compliance by providing detailed network activity logs required for auditing and reporting purposes.

Recently, FortiLogger 4.4.2.2 has been identified with a vulnerability code CVE-2021-3378. This vulnerability allows an attacker to upload arbitrary files by sending a "Content-Type: image/png" header to Config/SaveUploadedHotspotLogoFile, which can then be accessed by visiting Assets/temp/hotspot/img/logohotspot.asp. This flaw can be exploited by hackers to gain unauthorized access to the network and execute malicious codes to compromise critical data, leak confidential information, or launch ransomware attacks. 

In the hands of an attacker, the CVE-2021-3378 vulnerability can pose serious risks to network security. A successful exploitation can lead to a range of devastating consequences, ranging from financial losses to reputational damage. Cybercriminals can easily take advantage of the uploaded files to introduce malware, steal data, or execute malicious commands. Moreover, these attacks can be carried out remotely and without the need for any authentication, making it essential to resolve this issue as quickly as possible. 

Thanks to the pro features of the s4e.io platform, businesses can easily and quickly learn about vulnerabilities in their digital assets, including FortiLogger. By providing comprehensive insights into network security vulnerabilities, this platform helps businesses stay one step ahead of cybercriminals and safeguard their critical data. Whether you're an IT pro or a small business owner, s4e.io provides the essential tools and expertise necessary to protect against cyber threats and stay ahead of the curve in today's rapidly evolving digital landscape.

 

REFERENCES

Solution Advice

To protect against the CVE-2021-3378 vulnerability, it is essential to follow some basic precautions, including:

  • Ensure that the FortiLogger software is updated with the latest security patches.
  • Monitor network activity regularly and investigate any unusual behavior or events.
  • Limit file upload permissions to prevent unauthorized users from uploading malicious files.
  • Implement Web Application Firewalls (WAF) to monitor and block suspicious traffic.
  • Train users to recognize phishing emails and other social engineering tactics that can lead to successful attacks.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2021-3378 scanner - File Upload vulnerability in FortiLogger S4E