An Incorrect Provision of Specified Functionality vulnerability [CWE-684] in FortiOS 7.6.0, 7.4.0 through 7.4.5, 7.2.5 through 7.2.10, 7.0.0 through 7.0.15, 6.4 all versions may allow a local authenticated attacker to execute system commands via crafted CLI commands.
2025-10-14T16:15:40.767
2025-10-14T20:22:50.327
Analyzed
CVSSv3.1: 8.2 (HIGH)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | fortinet | fortios | < 7.0.16 | Yes |
| Operating System | fortinet | fortios | < 7.2.11 | Yes |
| Operating System | fortinet | fortios | < 7.4.6 | Yes |
| Operating System | fortinet | fortios | 7.6.0 | Yes |