OS Command Injection Vulnerability in FortiSandbox by Fortinet
CVE-2024-54018
What is CVE-2024-54018?
Multiple issues related to improper neutralization of special elements used in OS command contexts have been identified in FortiSandbox prior to version 4.4.5. These vulnerabilities enable a privileged attacker to craft requests that can execute unauthorized commands on the affected system, potentially leading to data breaches or other malicious activities. It’s crucial for users to update their systems promptly to mitigate the risk associated with this exploit. For more details, refer to the official Fortinet advisory.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
FortiSandbox 4.4.0 <= 4.4.4
FortiSandbox 4.2.1 <= 4.2.6
FortiSandbox 4.0.0 <= 4.0.6
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved