CVE-2023-36634 Detail DescriptionAn incomplete filtering of one or more instances of special elements vulnerability [CWE-792] in the command line interpreter of FortiAP-U 7.0.0, 6.2.0 through 6.2.5, 6.0 all versions, 5.4 all versions may allow an authenticated attacker to list and delete arbitrary files and directory via specially crafted command arguments.
Read more
Related Posts
- Kubernetes vulnerability allows RCE on Windows endpoints (CVE-2023-3676)a
- Warning: critical RCE vulnerability CVE-2023-33308 in FortiOS and FortiProxy products, Patch Immediately!a
- Trellix DLP Vulnerability Allows Attackers To Delete Unprivileged Filesa
- Security alert: zero-day vulnerability CVE-2023-4863 in libwebp (WebP) librarya
- Google patches 43 Android Vulnerabilities Including 3 actively exploited zero-daysa