CVE-2024-55593
EUVD-2024-5282014.01.2025, 14:15
A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiWeb versions 6.3.17 through 7.6.1 allows attacker to gain information disclosure via crafted SQL queriesAffected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| fortinet | fortiweb | 6.3.6 ≤ 𝑥 < 7.6.2 |
𝑥
= Vulnerable software versions