Lucene search

K
fortinetFortiGuard LabsFG-IR-22-049
HistoryJul 05, 2022 - 12:00 a.m.

FortiAnalyzer & FortiManager - OS command injection vulnerability in CLI

2022-07-0500:00:00
FortiGuard Labs
www.fortiguard.com
20
os command injection
fortianalyzer
fortimanager
cwe-78
cli
authenticated attacker
shell code
root user

EPSS

0.001

Percentile

48.5%

An improper neutralization of special elements used in an OS command (‘OS Command Injection’) vulnerability [CWE-78] in FortiAnalyzer & FortiManager may allow an authenticated attacker to execute arbitrary shell code as root user via diagnose system CLI commands.

EPSS

0.001

Percentile

48.5%

Related for FG-IR-22-049