Lucene search

K
fortinetFortiGuard LabsFG-IR-22-048
HistoryFeb 16, 2023 - 12:00 a.m.

FortiExtender - multiple command injection vulnerabilities in webserver

2023-02-1600:00:00
FortiGuard Labs
www.fortiguard.com
11
fortiextender
webserver
command injection

0.001 Low

EPSS

Percentile

48.5%

An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in the webserver of FortiExtender may allow a privileged attacker to execute arbitrary OS commands via specially crafted input parameters.

0.001 Low

EPSS

Percentile

48.5%

Related for FG-IR-22-048