A improper neutralization of special elements used in a command ('command injection') in Fortinet FortiNAC 7.2.1 and earlier, 9.4.3 and earlier allows attacker a limited, unauthorized file access via specifically crafted request in inter-server communication port.
References
Link | Resource |
---|---|
https://fortiguard.com/psirt/FG-IR-23-096 |
Configurations
No configuration.
History
14 Mar 2025, 16:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-03-14 16:15
Updated : 2025-03-14 16:15
NVD link : CVE-2023-33300
Mitre link : CVE-2023-33300
CVE.ORG link : CVE-2023-33300
JSON object : View
Products Affected
No product.
CWE
CWE-77
Improper Neutralization of Special Elements used in a Command ('Command Injection')