Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jcp2-cx35-47gg

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A Improper neutralization of special elements used in a command ('Command Injection') in Fortinet FortiWeb version 6.3.13 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests

A Improper neutralization of special elements used in a command ('Command Injection') in Fortinet FortiWeb version 6.3.13 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests

EPSS

Процентиль: 73%
0.00748
Низкий

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 8.8
nvd
больше 4 лет назад

A Improper neutralization of special elements used in a command ('Command Injection') in Fortinet FortiWeb version 6.3.13 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests

EPSS

Процентиль: 73%
0.00748
Низкий

Дефекты

CWE-78