A improper neutralization of special elements used in a template engine [CWE-1336] in FortiManager versions 7.4.1 and below, versions 7.2.4 and below, and 7.0.10 and below allows attacker to execute unauthorized code or commands via specially crafted templates.
References
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: fortinet

Published: 2024-04-09T14:24:24.616Z

Updated: 2024-08-02T21:09:37.383Z

Reserved: 2023-11-06T10:35:25.828Z

Link: CVE-2023-47542

cve-icon Vulnrichment

Updated: 2024-08-02T21:09:37.383Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-04-09T15:15:28.207

Modified: 2024-04-10T13:24:22.187

Link: CVE-2023-47542

cve-icon Redhat

No data.