7.2
CVSSv3

CVE-2022-27483

Published: 19/07/2022 Updated: 27/07/2022
CVSS v3 Base Score: 7.2 | Impact Score: 5.9 | Exploitability Score: 1.2
VMScore: 0

Vulnerability Summary

A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiManager version 7.0.0 up to and including 7.0.3, 6.4.0 up to and including 6.4.7, 6.2.x and 6.0.x and FortiAnalyzer version 7.0.0 up to and including 7.0.3, version 6.4.0 up to and including 6.4.7, 6.2.x and 6.0.x allows malicious user to execute arbitrary shell code as `root` user via `diagnose system` CLI commands.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fortinet fortimanager

fortinet fortianalyzer