CVE-2024-21760
CVE-2024-21760
Título es
CVE-2024-21760
Mar, 18/03/2025 – 14:15
Tipo
CWE-94
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2024-21760
Descripción en
An improper control of generation of code ('Code Injection') vulnerability [CWE-94] in FortiSOAR Connector FortiSOAR 7.4 all versions, 7.3 all versions, 7.2 all versions, 7.0 all versions, 6.4 all versions may allow an authenticated attacker to execute arbitrary code on the host via a playbook code snippet.
18/03/2025
18/03/2025
Vector CVSS:3.1
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:H/I:H/A:H
Gravedad 3.1 (CVSS 3.1 Base Score)
8.40
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
HIGH
Referencias
https://fortiguard.fortinet.com/psirt/FG-IR-23-420
Enviar en el boletín
Off
