CVE-2022-27489 Information
Feb 17, 2023
cve
Description
A improper neutralization of special elements used in an os command (‘os command injection’) in Fortinet FortiExtender 7.0.0 through 7.0.3 5.3.2 4.2.4 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests.
Reference
https://fortiguard.com/psirt/FG-IR-22-048
Share on: