Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiSwitch version 7.4.0 and 7.2.0 through 7.2.5 and 7.0.0 through 7.0.7 and 6.4.0 through 6.4.13 and 6.2.0 through 6.2.7 and 6.0.0 through 6.0.7 allows attacker to execute unauthorized code or commands via the FortiSwitch CLI.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
Fortinet FortiSwitch 操作系统命令注入漏洞
Vulnerability Description
Fortinet FortiSwitch是美国飞塔(Fortinet)公司的一款网络交换机管理工具。 Fortinet FortiSwitch存在操作系统命令注入漏洞,该漏洞源于特殊元素中和不当,允许攻击者通过 FortiSwitch CLI 执行未经授权的代码或命令。
CVSS Information
N/A
Vulnerability Type
N/A