Lucene search

K
fortinetFortiGuard LabsFG-IR-22-297
HistoryMay 03, 2023 - 12:00 a.m.

FortiADC - Command injection in external resource module

2023-05-0300:00:00
FortiGuard Labs
www.fortiguard.com
24
fortiadc
command injection
external resource
vulnerability
cwe-78
authenticated attacker
unauthorized commands
crafted arguments
os command

EPSS

0

Percentile

9.6%

An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in FortiADC may allow an authenticated attacker to execute unauthorized commands via specifically crafted arguments to existing commands.

EPSS

0

Percentile

9.6%

Related for FG-IR-22-297