NA

CVE-2023-40716

Published: 13/12/2023 Updated: 15/12/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

An improper neutralization of special elements used in an OS command vulnerability [CWE-78]  in the command line interpreter of FortiTester 2.3.0 up to and including 7.2.3 may allow an authenticated malicious user to execute unauthorized commands via specifically crafted arguments when running execute restore/backup .

Vulnerable Product Search on Vulmon Subscribe to Product

fortinet fortitester 3.8.0

fortinet fortitester 7.0.0

fortinet fortitester 7.1.0

fortinet fortitester 3.0.0

fortinet fortitester 3.1.0

fortinet fortitester 3.2.0

fortinet fortitester 3.3.1

fortinet fortitester 3.3.0

fortinet fortitester 3.4.0

fortinet fortitester 3.5.0

fortinet fortitester 3.5.1

fortinet fortitester 3.6.0

fortinet fortitester 3.7.0

fortinet fortitester 3.7.1

fortinet fortitester 3.9.0

fortinet fortitester 3.9.1

fortinet fortitester 4.0.0

fortinet fortitester 4.1.0

fortinet fortitester 4.1.1

fortinet fortitester 4.2.0

fortinet fortitester 7.2.1

fortinet fortitester 7.2.2

fortinet fortitester 7.2.3

fortinet fortitester 7.2.0

fortinet fortitester 7.1.1

fortinet fortitester 2.3.0

fortinet fortitester 2.4.0

fortinet fortitester 2.4.1

fortinet fortitester 2.5.0

fortinet fortitester 2.6.0

fortinet fortitester 2.7.0

fortinet fortitester 2.8.0

fortinet fortitester 2.9.0

fortinet fortitester 3.9.2

fortinet fortitester 4.2.1