ZeroHour

CVE-2024-50567

CVSS 3.1
7.2 high
EPSS
2%p81
Published
()
Modified
Description

An improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWeb 7.4.0 through 7.6.0 allows attacker to execute unauthorized code or commands via crafted input.

Vendors
fortinet
Products
fortiweb
Weakness
CWE-78
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.