Skip to content

Known CVE

Fortinet FortiSIEM - Unauthenticated Command Injection

An improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiSIEM versions 7.1.0 through 7.1.1, 7.0.0 through 7.0.2, 6.7.0 through 6.7.8, 6.6.0 through 6.6.3, 6.5.0 through 6.5.2, and 6.4.0 through 6.4.3 allows an unauthenticated attacker to execute unauthorized code or commands via crafted API requests.

CVE-2023-34992

Critical2023CVSS 9.8CWE-78

cve2023 · fortisiem · network · fortinet · rce · tcp · unauth

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website