An instance of improper neutralization of special elements in the sniffer module of FortiSandbox before 3.2.2 may allow an authenticated administrator to execute commands on the underlying system's shell via altering the content of its configuration file.
References
Link | Resource |
---|---|
https://fortiguard.com/advisory/FG-IR-21-005 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: fortinet
Published: 2021-07-20T10:28:15
Updated: 2021-07-20T10:28:15
Reserved: 2021-01-04T00:00:00
Link: CVE-2021-22125
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-07-20T11:15:11.340
Modified: 2022-05-03T16:04:40.443
Link: CVE-2021-22125
JSON object: View
Redhat Information
No data.
CWE