CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects Fortinet.
CVE
CVE-2023-36553
Severity
CRITICAL
CVSS
9.8
EPSS
1.88%
Fortinet
Original NVD Description
A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiSIEM version 5.4.0 and 5.3.0 through 5.3.3 and 5.2.5 through 5.2.8 and 5.2.1 through 5.2.2 and 5.1.0 through 5.1.3 and 5.0.0 through 5.0.1 and 4.10.0 and 4.9.0 and 4.7.2 allows attacker to execute unauthorized code or commands via crafted API requests.
Related CVEs
Other vulnerabilities affecting the same vendor(s)