Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gv3p-qv63-g8qx

Опубликовано: 13 дек. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

An improper neutralization of special elements used in an OS command vulnerability [CWE-78]  in the command line interpreter of FortiTester 2.3.0 through 7.2.3 may allow an authenticated attacker to execute unauthorized commands via specifically crafted arguments when running execute restore/backup .

An improper neutralization of special elements used in an OS command vulnerability [CWE-78]  in the command line interpreter of FortiTester 2.3.0 through 7.2.3 may allow an authenticated attacker to execute unauthorized commands via specifically crafted arguments when running execute restore/backup .

EPSS

Процентиль: 23%
0.00074
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 6.7
nvd
около 2 лет назад

An improper neutralization of special elements used in an OS command vulnerability [CWE-78]  in the command line interpreter of FortiTester 2.3.0 through 7.2.3 may allow an authenticated attacker to execute unauthorized commands via specifically crafted arguments when running execute restore/backup .

EPSS

Процентиль: 23%
0.00074
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-78