Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3x2q-7fcg-xmg5

Опубликовано: 12 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.2

Описание

An improper neutralization of special elements used in an OS Command ("OS Command Injection") vulnerability [CWE-78] in Fortinet FortiADC version 7.2.0 and before 7.1.1 allows a remote and authenticated attacker with low privilege to execute unauthorized code via specifically crafted HTTP parameters.

An improper neutralization of special elements used in an OS Command ("OS Command Injection") vulnerability [CWE-78] in Fortinet FortiADC version 7.2.0 and before 7.1.1 allows a remote and authenticated attacker with low privilege to execute unauthorized code via specifically crafted HTTP parameters.

EPSS

Процентиль: 35%
0.00142
Низкий

7.2 High

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 7.2
nvd
6 месяцев назад

An improper neutralization of special elements used in an OS Command ("OS Command Injection") vulnerability [CWE-78] in Fortinet FortiADC version 7.2.0 and before 7.1.1 allows a remote and authenticated attacker with low privilege to execute unauthorized code via specifically crafted HTTP parameters.

EPSS

Процентиль: 35%
0.00142
Низкий

7.2 High

CVSS3

Дефекты

CWE-78