CVE-2024-23109
05.02.2024, 14:15
An improper neutralization of special elements used in an os command ('os command injection') vulnerability in Fortinet allows attacker to execute unauthorized code or commands via viacrafted API requests.| Vendor | Product | Version |
|---|---|---|
| fortinet | fortisiem | 6.4.0 ≤ 𝑥 ≤ 6.4.2 |
| fortinet | fortisiem | 6.5.0 ≤ 𝑥 ≤ 6.5.2 |
| fortinet | fortisiem | 6.6.0 ≤ 𝑥 ≤ 6.6.3 |
| fortinet | fortisiem | 6.7.0 ≤ 𝑥 ≤ 6.7.8 |
| fortinet | fortisiem | 7.0.0 ≤ 𝑥 ≤ 7.0.2 |
| fortinet | fortisiem | 7.1.0 |
| fortinet | fortisiem | 7.1.1 |
𝑥
= Vulnerable software versions