Description
Multiple improper neutralization of special elements used in an OS command vulnerabilities (CWE-78) in the Web GUI of FortiWAN before 4.5.9 may allow an authenticated attacker to execute arbitrary commands on the underlying system's shell via specifically crafted HTTP requests.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-10929 | Multiple improper neutralization of special elements used in an OS command vulnerabilities (CWE-78) in the Web GUI of FortiWAN before 4.5.9 may allow an authenticated attacker to execute arbitrary commands on the underlying system's shell via specifically crafted HTTP requests. |
References
| Link | Providers |
|---|---|
| https://fortiguard.com/psirt/FG-IR-21-060 |
|
History
Fri, 25 Oct 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-10-25T13:33:53.241Z
Reserved: 2021-01-13T00:00:00.000Z
Link: CVE-2021-24009
Updated: 2024-08-03T19:14:10.030Z
Status : Modified
Published: 2022-04-06T10:15:07.827
Modified: 2024-11-21T05:52:11.923
Link: CVE-2021-24009
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD