Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-51653 | A improper neutralization of special elements used in a template engine [CWE-1336] in FortiManager versions 7.4.1 and below, versions 7.2.4 and below, and 7.0.10 and below allows attacker to execute unauthorized code or commands via specially crafted templates. |
Solution
Please upgrade to FortiManager version 7.4.2 or above Please upgrade to FortiManager version 7.2.5 or above Please upgrade to FortiManager version 7.0.11 or above
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://fortiguard.com/psirt/FG-IR-23-419 |
|
Tue, 04 Mar 2025 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:fortinet:fortimanager:-:*:*:*:*:*:*:* | |
| Metrics |
ssvc
|
Fri, 17 Jan 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Fortinet
Fortinet fortimanager |
|
| Weaknesses | CWE-94 | |
| CPEs | cpe:2.3:a:fortinet:fortimanager:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Fortinet
Fortinet fortimanager |
Status: PUBLISHED
Assigner: fortinet
Published:
Updated: 2025-02-26T18:40:53.696Z
Reserved: 2023-11-06T10:35:25.828Z
Link: CVE-2023-47542
Updated: 2024-08-02T21:09:37.383Z
Status : Analyzed
Published: 2024-04-09T15:15:28.207
Modified: 2025-01-17T17:11:28.947
Link: CVE-2023-47542
No data.
OpenCVE Enrichment
No data.
EUVD