CVE-2022-33869
published 2023-02-16CVE-2022-33869: An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in the management interface of FortiWAN 4.0.0 through 4.5.9 may…
high8.8CVSS 3.1
AVNACLPRLUINSUCHIHAH
An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in the management interface of FortiWAN 4.0.0 through 4.5.9 may allow an authenticated attacker to execute unauthorized commands via specifically crafted arguments to existing commands.
Affected
21 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | fortiwan | — | — |
| fortinet | fortiwan | — | — |
| fortinet | fortiwan | — | — |
| fortinet | fortiwan | — | — |
| fortinet | fortiwan | — | — |
| fortinet | fortiwan | — | — |
| fortinet | fortiwan | — | — |
| fortinet | fortiwan | — | — |
| fortinet | fortiwan | — | — |
| fortinet | fortiwan | — | — |
| fortinet | fortiwan | — | — |
| fortinet | fortiwan | — | — |
| fortinet | fortiwan | — | — |
| fortinet | fortiwan | 4.0.0 – 4.0.6 | — |
| fortinet | fortiwan | 4.1.1 – 4.1.3 | — |
| fortinet | fortiwan | 4.2.1 – 4.2.2 | — |
| fortinet | fortiwan | 4.2.5 – 4.2.7 | — |
| fortinet | fortiwan | 4.3.0 – 4.3.1 | — |
| fortinet | fortiwan | 4.4.0 – 4.4.1 | — |
| fortinet | fortiwan | >= 4.5.0 < 4.5.10 | 4.5.10 |
| fortinet | fortiwan | 4.5.0 – 4.5.9 | — |