Show filters
23 Total Results
Displaying 1-10 of 23
Sort by:
Attacker Value
Unknown

CVE-2023-34990

Disclosure Date: December 18, 2024 (last updated December 19, 2024)
A relative path traversal in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5.4 allows attacker to execute unauthorized code or commands via specially crafted web requests.
0
Attacker Value
Unknown

CVE-2023-48782

Disclosure Date: December 13, 2023 (last updated December 16, 2023)
A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 allows attacker to execute unauthorized code or commands via specifically crafted http get request parameters
Attacker Value
Unknown

CVE-2023-42783

Disclosure Date: November 14, 2023 (last updated November 18, 2023)
A relative path traversal in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5.4 and 8.4.2 through 8.4.0 and 8.3.2 through 8.3.0 and 8.2.2 allows attacker to read arbitrary files via crafted http requests.
Attacker Value
Unknown

CVE-2023-34991

Disclosure Date: November 14, 2023 (last updated November 21, 2023)
A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5.4 and 8.4.0 through 8.4.2 and 8.3.0 through 8.3.2 and 8.2.2 allows attacker to execute unauthorized code or commands via a crafted http request.
Attacker Value
Unknown

CVE-2023-36550

Disclosure Date: October 10, 2023 (last updated October 12, 2023)
A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5.4 allows attacker to execute unauthorized code or commands via specifically crafted http get request parameters.
Attacker Value
Unknown

CVE-2023-36549

Disclosure Date: October 10, 2023 (last updated October 12, 2023)
A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5.4 allows attacker to execute unauthorized code or commands via specifically crafted http get request parameters.
Attacker Value
Unknown

CVE-2023-36548

Disclosure Date: October 10, 2023 (last updated October 12, 2023)
A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5.4 allows attacker to execute unauthorized code or commands via specifically crafted http get request parameters.
Attacker Value
Unknown

CVE-2023-36547

Disclosure Date: October 10, 2023 (last updated October 12, 2023)
A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5.4 allows attacker to execute unauthorized code or commands via specifically crafted http get request parameters.
Attacker Value
Unknown

CVE-2023-34993

Disclosure Date: October 10, 2023 (last updated October 12, 2023)
A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5.4 allows attacker to execute unauthorized code or commands via specifically crafted http get request parameters.
Attacker Value
Unknown

CVE-2023-34989

Disclosure Date: October 10, 2023 (last updated October 12, 2023)
A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiWLM version 8.6.0 through 8.6.5 and 8.5.0 through 8.5.4 allows attacker to execute unauthorized code or commands via specifically crafted HTTP get request parameters.