CVE-2023-23783
6.7MEDIUMA use of externally-controlled format string in Fortinet FortiWeb version 7.0.0 through 7.0.1, FortiWeb 6.4 all versions allows attacker to execute unauthorized code or commands via specially crafted
Published: 2/16/2023Updated: 11/21/2024
Description
A use of externally-controlled format string in Fortinet FortiWeb version 7.0.0 through 7.0.1, FortiWeb 6.4 all versions allows attacker to execute unauthorized code or commands via specially crafted command arguments.
AI AnalysisPowered by AI
Affected Products
fortinetfortiweb
fortinetfortiweb
References
- https://fortiguard.com/psirt/FG-IR-22-187Vendor Advisory
- https://fortiguard.com/psirt/FG-IR-22-187Vendor Advisory