OS Command Injection Vulnerability in Fortinet FortiIsolator
CVE-2024-54025
6.5MEDIUM
What is CVE-2024-54025?
An OS command injection vulnerability exists in Fortinet FortiIsolator's command-line interface (CLI) prior to version 2.4.6. This flaw allows an attacker with privileged access to execute unauthorized commands by crafting specific CLI requests. The improper handling of special elements within these commands can lead to serious security breaches, enabling the execution of malicious code that may compromise the system.
Affected Version(s)
FortiIsolator 2.4.3 <= 2.4.6