Security Advisory
CVE-2024-40587
6.7
MEDIUM
Vulnerability Description
An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in Fortinet FortiVoice version 7.0.0 through 7.0.4 and before 6.4.9 allows an authenticated privileged attacker to execute unauthorized code or commands via crafted CLI requests.
Published Date
January 14, 2025
Official Source
NIST NVD Advisory