Lucene search

K
fortinetFortiGuard LabsFG-IR-22-237
HistoryOct 10, 2022 - 12:00 a.m.

FortiTester - Unauthenticated command injection

2022-10-1000:00:00
FortiGuard Labs
www.fortiguard.com
10
fortitester
command injection
vulnerability
remote attacker
os command injection
cwe-78
console
telnet
ssh

EPSS

0.002

Percentile

52.3%

Multiple improper neutralization of special elements used in an OS Command (β€˜OS Command Injection’) vulnerabilities [CWE-78] in Console, Telnet, and SSH login components of FortiTester may allow an unauthenticated remote attacker to execute arbitrary command in the underlying shell.

EPSS

0.002

Percentile

52.3%

Related for FG-IR-22-237