cve/2022/CVE-2022-33873.md
2024-05-25 21:48:12 +02:00

824 B

CVE-2022-33873

Description

An improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerabilities [CWE-78] in Console login components of FortiTester 2.3.0 through 3.9.1, 4.0.0 through 4.2.0, 7.0.0 through 7.1.0 may allow an unauthenticated attacker to execute arbitrary command in the underlying shell.

POC

Reference

No PoCs from references.

Github