A use of externally-controlled format string in Fortinet FortiWeb version 7.0.0 through 7.0.1, FortiWeb 6.4 all versions allows attacker to execute unauthorized code or commands via specially crafted command arguments.
References
Link Resource
https://fortiguard.com/psirt/FG-IR-22-187 Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: fortinet

Published: 2023-02-16T18:05:55.113Z

Updated: 2023-02-16T18:05:55.113Z

Reserved: 2023-01-18T08:30:21.308Z


Link: CVE-2023-23783

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2023-02-16T19:15:14.450

Modified: 2023-11-07T04:07:58.507


Link: CVE-2023-23783

JSON object: View

cve-icon Redhat Information

No data.

CWE