Lucene search

K
fortinetFortiGuard LabsFG-IR-22-186
HistoryApr 11, 2023 - 12:00 a.m.

FortiWeb & FortiADC - OS command injection in CLI

2023-04-1100:00:00
FortiGuard Labs
www.fortiguard.com
36
improper neutralization special elements
os command vulnerability
command line interpreter
fortiweb
fortiadc
authenticated attacker
unauthorized commands
specifically crafted arguments

EPSS

0

Percentile

9.6%

An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in the command line interpreter of FortiWeb & FortiADC may allow an authenticated attacker to execute unauthorized commands via specifically crafted arguments to existing commands.

EPSS

0

Percentile

9.6%

Related for FG-IR-22-186