Vulnerability CVE-2024-33508


Published: 2024-09-10

Description:
An improper neutralization of special elements used in a command ('Command Injection') vulnerability [CWE-77] in Fortinet FortiClientEMS 7.2.0 through 7.2.4, 7.0.0 through 7.0.12 may allow an unauthenticated attacker to execute limited and temporary operations on the underlying database via crafted requests.

Type:

CWE-77

(Improper Neutralization of Special Elements used in a Command ('Command Injection'))

 References:
https://fortiguard.fortinet.com/psirt/FG-IR-24-123

Copyright 2026, cxsecurity.com

 

Back to Top