FG-IR-24-130: Authenticated SQLI on CLI
Two improper neutralization of special elements used in an SQL Command ('SQL Injection') vulnerability [CWE-89] in FortiAnalyzer, FortiManager & FortiAnalyzer-BigData may allow a privileged attacker to execute unauthorized code or commands via specifically crafted CLI requests.
Affected Software
Event History
Frequently Asked Questions
What is the severity of FG-IR-24-130?
FG-IR-24-130 is a critical severity vulnerability that allows SQL Injection through improperly handled special elements in FortiAnalyzer and FortiManager.
How do I fix FG-IR-24-130?
To fix FG-IR-24-130, update FortiAnalyzer and FortiManager to the latest versions specified in the advisory.
What products are affected by FG-IR-24-130?
FG-IR-24-130 affects multiple versions of FortiAnalyzer and FortiManager, particularly those below specific version thresholds.
Can FG-IR-24-130 be exploited remotely?
Yes, FG-IR-24-130 can be exploited remotely by a privileged attacker through crafted CLI requests.
What defines a privileged attacker in the context of FG-IR-24-130?
A privileged attacker in FG-IR-24-130 refers to an individual with access rights that can execute unauthorized commands on the affected systems.