Source |
The Hacker News |
Identifiant |
3246781 |
Date de publication |
2021-08-17 20:41:47 (vue: 2021-08-18 04:05:54) |
Titre |
Unpatched Remote Hacking Flaw Disclosed in Fortinet\'s FortiWeb WAF |
Texte |
Details have emerged about a new unpatched security vulnerability in Fortinet's web application firewall (WAF) appliances that could be abused by a remote, authenticated attacker to execute malicious commands on the system.
"An OS command injection vulnerability in FortiWeb's management interface (version 6.3.11 and prior) can allow a remote, authenticated attacker to execute arbitrary commands |
Notes |
|
Envoyé |
Oui |
Condensat |
about abused allow appliances application arbitrary attacker authenticated can command commands could details disclosed emerged execute firewall flaw fortinet fortiweb hacking have injection interface malicious management new prior remote security system unpatched version vulnerability waf web |
Tags |
Vulnerability
|
Stories |
|
Move |
|