OS Command Injection Vulnerability in FortiTester by Fortinet
CVE-2023-36642
What is CVE-2023-36642?
The vulnerability in FortiTester affects versions from 3.0.0 through 7.2.3, allowing authenticated attackers to exploit improper neutralization of special elements used in OS commands. By crafting specific arguments to existing commands, attackers can execute unauthorized commands through the management interface, posing a threat to the integrity and security of the system. This highlights the critical need for timely patches and security measures to mitigate risks associated with command injection attacks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
FortiTester 7.2.0 <= 7.2.3
FortiTester 7.1.0 <= 7.1.1
FortiTester 7.0.0
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved