CVE-2022-33869: OS Command Injection
An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in the management interface of FortiWAN 4.0.0 through 4.5.9 may allow an authenticated attacker to execute unauthorized commands via specifically crafted arguments to existing commands.
Affected Software
Remediation
Patch Available
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2022-33869?
CVE-2022-33869 has been classified with a high severity due to its potential impact on system security.
How do I fix CVE-2022-33869?
To fix CVE-2022-33869, upgrade your FortiWAN software to a version that is not affected by the vulnerability.
What versions of FortiWAN are affected by CVE-2022-33869?
CVE-2022-33869 affects FortiWAN versions from 4.0.0 through 4.5.9.
Can CVE-2022-33869 be exploited remotely?
CVE-2022-33869 cannot be exploited remotely as it requires authenticated access to the management interface.
What type of vulnerability is CVE-2022-33869?
CVE-2022-33869 is classified as an improper neutralization of special elements used in an OS command vulnerability.