← العودة للجدول
CVE-2023-48788
CVE-2023-48788 — A improper neutralization of special elements used in an sql command ('sql
📅 2024-03-12
🔴 Critical 🔥 Yes NVD Exploit Fortinet CVSS 9.8 🎯 EPSS 94.04%

📋 الوصف الكامل

A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiClientEMS version 7.2.0 through 7.2.2, FortiClientEMS 7.0.1 through 7.0.10 allows attacker to execute unauthorized code or commands via specially crafted packets.

💻 الأنظمة المتأثرة

Fortinet

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2023-48788

📡 المصدر

NVD

✅ الحلول والتخفيف

Update to v7.2.0 | Fortinet PSIRT Advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←