CVE-2024-54018
7.2HIGHMultiple improper neutralization of special elements used in an OS Command vulnerabilities [CWE-78] in FortiSandbox before 4.4.5 allows a privileged attacker to execute unauthorized commands via craft
Published: 3/11/2025Updated: 7/23/2025
Description
Multiple improper neutralization of special elements used in an OS Command vulnerabilities [CWE-78] in FortiSandbox before 4.4.5 allows a privileged attacker to execute unauthorized commands via crafted requests.
AI AnalysisPowered by AI
Affected Products
fortinetfortisandbox
References
- https://fortiguard.fortinet.com/psirt/FG-IR-24-110Vendor Advisory