Description
An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in Fortinet FortiSOAR before 7.2.1 allows an authenticated attacker to execute unauthorized code or commands via crafted HTTP GET requests.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-33474 | An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in Fortinet FortiSOAR before 7.2.1 allows an authenticated attacker to execute unauthorized code or commands via crafted HTTP GET requests. |
References
| Link | Providers |
|---|---|
| https://fortiguard.com/psirt/FG-IR-22-156 |
|
History
Fri, 25 Oct 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2024-10-25T13:29:59.848Z
Reserved: 2022-04-11T00:00:00.000Z
Link: CVE-2022-29061
Updated: 2024-08-03T06:10:58.942Z
Status : Modified
Published: 2022-09-09T07:15:07.313
Modified: 2024-11-21T06:58:25.810
Link: CVE-2022-29061
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD