An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in FortiADC 7.2.0, 7.1.0 through 7.1.1 may allow an authenticated attacker to execute unauthorized commands via specifically crafted arguments to existing commands.
2023-05-03T22:15:19.200
2024-11-21T07:53:54.277
Modified
CVSSv3.1: 7.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | fortinet | fortiadc | < 7.1.2 | Yes |
Application | fortinet | fortiadc | 7.2.0 | Yes |