Security Advisory

CVE-2024-40587

6.7
MEDIUM

Vulnerability Description

An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in Fortinet FortiVoice version 7.0.0 through 7.0.4 and before 6.4.9 allows an authenticated privileged attacker to execute unauthorized code or commands via crafted CLI requests.
Published Date January 14, 2025
Official Source NIST NVD Advisory