Vulnerabilities > Fortinet > Fortiddos > 5.7.0

DATE CVE VULNERABILITY TITLE RISK
2024-08-13 CVE-2022-27486 OS Command Injection vulnerability in Fortinet Fortiddos and Fortiddos-F
A improper neutralization of special elements used in an os command ('os command injection') in Fortinet FortiDDoS version 5.5.0 through 5.5.1, 5.4.2 through 5.4.0, 5.3.0 through 5.3.1, 5.2.0, 5.1.0, 5.0.0, 4.7.0, 4.6.0 and 4.5.0 and FortiDDoS-F version 6.3.0 through 6.3.1, 6.2.0 through 6.2.2, 6.1.0 through 6.1.4 allows an authenticated attacker to execute shell code as `root` via `execute` CLI commands.
local
low complexity
fortinet CWE-78
7.8