Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-47534


A improper neutralization of formula elements in a csv file in Fortinet FortiClientEMS version 7.2.0 through 7.2.2, 7.0.0 through 7.0.10, 6.4.0 through 6.4.9, 6.2.0 through 6.2.9, 6.0.0 through 6.0.8 allows attacker to execute unauthorized code or commands via specially crafted packets.


Published

2024-03-12T15:15:46.770

Last Modified

2024-11-21T08:30:24.837

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.6 (CRITICAL)

Weaknesses
  • Type: Secondary
    CWE-1236
  • Type: Primary
    CWE-1236

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application fortinet forticlient_endpoint_management_server ≤ 6.0.8 Yes
Application fortinet forticlient_endpoint_management_server ≤ 6.2.9 Yes
Application fortinet forticlient_endpoint_management_server ≤ 6.4.9 Yes
Application fortinet forticlient_endpoint_management_server ≤ 7.0.10 Yes
Application fortinet forticlient_endpoint_management_server ≤ 7.2.2 Yes

References