ZeroHour

CVE-2024-50569

CVSS 3.1
7.2 high
EPSS
2%p77
Published
()
Modified
Description

A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWeb 7.0.0 through 7.6.0 allows attacker to execute unauthorized code or commands via crafted input.

Vendors
fortinet
Products
fortiweb
Weakness
CWE-78
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.