NA

CVE-2022-33874

Published: 18/10/2022 Updated: 21/10/2022
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerabilities [CWE-78] in SSH login components of FortiTester 2.3.0 up to and including 3.9.1, 4.0.0 up to and including 4.2.0, 7.0.0 up to and including 7.1.0 may allow an unauthenticated remote malicious user to execute arbitrary command in the underlying shell.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

fortinet fortitester