ZeroHour

CVE-2023-41838

CVSS 3.1
7.1 high
EPSS
<1%p42
Published
()
Modified
Description

An improper neutralization of special elements used in an os command ('os command injection') in FortiManager 7.4.0 and 7.2.0 through 7.2.3 may allow attacker to execute unauthorized code or commands via FortiManager cli.

Vendors
fortinet
Products
fortianalyzer, fortimanager
Weakness
CWE-78
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H

In the news

No ingested article mentions this CVE yet.