An improper neutralization of special elements used in an os command ('os command injection') in FortiManager 7.4.0 and 7.2.0 through 7.2.3 may allow attacker to execute unauthorized code or commands via FortiManager cli.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://fortiguard.com/psirt/FG-IR-23-169 |
History
Wed, 18 Sep 2024 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: fortinet
Published: 2023-10-10T16:49:27.173Z
Updated: 2024-09-18T19:03:47.798Z
Reserved: 2023-09-04T08:12:52.814Z
Link: CVE-2023-41838
Vulnrichment
Updated: 2024-08-02T19:09:48.344Z
NVD
Status : Modified
Published: 2023-10-10T17:15:12.743
Modified: 2024-11-21T08:21:46.483
Link: CVE-2023-41838
Redhat
No data.