CVE-2022-33874
published 2022-10-18CVE-2022-33874: An improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerabilities [CWE-78] in SSH login components of FortiTester…
PriorityP271critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
2.84%
85.1th percentile
An improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerabilities [CWE-78] in SSH login components of FortiTester 2.3.0 through 3.9.1, 4.0.0 through 4.2.0, 7.0.0 through 7.1.0 may allow an unauthenticated remote attacker to execute arbitrary command in the underlying shell.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | fortinet_fortitester | — | — |
| fortinet | fortitester | — | — |
| fortinet | fortitester | >= 2.3.0 < 3.9.2 | 3.9.2 |
| fortinet | fortitester | >= 4.0.0 < 4.2.1 | 4.2.1 |
| fortinet | fortitester | >= 7.0.0 < 7.1.1 | 7.1.1 |
Detection & IOCsextracted from sources · hover to see the quote
- →Monitor for unauthenticated OS command injection attempts via SSH login component of FortiTester ↗
- →Monitor for unauthenticated OS command injection attempts via Telnet login component of FortiTester ↗
- →Monitor for unauthenticated OS command injection attempts via Console login component of FortiTester ↗
- ·Vulnerability affects multiple login surfaces (SSH, Telnet, Console) across a wide range of FortiTester versions; all three vectors are unauthenticated, broadening the attack surface significantly ↗
- ·CVE-2022-33874 (SSH) is closely related to CVE-2022-33872 (Telnet) and CVE-2022-33873 (Console) — all share the same CWE-78 root cause and affected version ranges on FortiTester; detections should cover all three login vectors ↗
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-hc98-vqpg-62xm: An improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerabilities [CWE-78] in SSH login components of Fort
ghsa_unreviewed·2022-10-18
CVE-2022-33874 [CRITICAL] CWE-78 GHSA-hc98-vqpg-62xm: An improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerabilities [CWE-78] in SSH login components of Fort
An improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerabilities [CWE-78] in SSH login components of FortiTester 2.3.0 through 3.9.1, 4.0.0 through 4.2.0, 7.0.0 through 7.1.0 may allow an unauthenticated remote attacker to execute arbitrary command in the underlying shell.
Fortinet
An improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerabilities [CWE-78] i...
vendor_fortinet·2022-10-18·CVSS 9.8
CVE-2022-33872 [CRITICAL] CWE-78 An improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerabilities [CWE-78] i...
FG-IR-22-237: An improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerabilities [CWE-78] i...
An improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerabilities [CWE-78] in Telnet login components of FortiTester 2.3.0 through 3.9.1, 4.0.0 through 4.2.0, 7.0.0 through 7.1.0 may allow an unauthenticated remote attacker to execute arbitrary command in the underlying shell.
An improper neutralization of special elements used in an OS Command ('OS Command Injection') vulnerabilities [CWE-78] in Console login components of FortiTester 2.3.0 through 3.9.1, 4.0.0 through 4.2.0, 7.0.0 through 7.1.0 may allow an unauthenticated attacker to execute arbitrary command in the underlying shell.
An improper neutraliz
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-10-18
Published