A use of externally-controlled format string in Fortinet FortiWeb version 7.0.0 through 7.0.1, FortiWeb 6.4 all versions allows attacker to execute unauthorized code or commands via specially crafted command arguments.
References
Link | Resource |
---|---|
https://fortiguard.com/psirt/FG-IR-22-187 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: fortinet
Published: 2023-02-16T18:05:55.113Z
Updated: 2023-02-16T18:05:55.113Z
Reserved: 2023-01-18T08:30:21.308Z
Link: CVE-2023-23783
JSON object: View
NVD Information
Status : Modified
Published: 2023-02-16T19:15:14.450
Modified: 2023-11-07T04:07:58.507
Link: CVE-2023-23783
JSON object: View
Redhat Information
No data.
CWE