CVE-2023-33300
14.03.2025, 16:15
A improper neutralization of special elements used in a command ('command injection') in Fortinet FortiNAC 7.2.1 and earlier, 9.4.3 and earlier allows attacker a limited, unauthorized file access via specifically crafted request in inter-server communication port.
Vendor | Product | Version |
---|---|---|
fortinet | fortinac | 7.2.0 ≤ 𝑥 < 7.2.2 |
fortinet | fortinac | 9.4.0 ≤ 𝑥 < 9.4.4 |
𝑥
= Vulnerable software versions