⚠ Actively exploited in ransomware campaigns
This vulnerability is on the CISA Known Exploited Vulnerabilities list and has been used in known ransomware attacks. CISA required action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.. Due date: 2024-04-15.

CVE-2023-48788SQL Injection in Fortinet Forticlient Enterprise Management Server

CWE-89SQL Injection11 documents10 sources
Severity
9.8CRITICALNVD
EPSS
94.1%
top 0.09%
CISA KEV
KEVRansomware
Added 2024-03-25
Due 2024-04-15
Exploit
Exploited in wild
Active exploitation observed
Timeline
PublishedMar 12
KEV addedMar 25
KEV dueApr 15
Latest updateDec 19
CISA Required Action: Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Description

A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiClientEMS version 7.2.0 through 7.2.2, FortiClientEMS 7.0.1 through 7.0.10 allows attacker to execute unauthorized code or commands via specially crafted packets.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

CVEListV5fortinet/forticlientems7.2.07.2.2+1

🔴Vulnerability Details

3
CVEList
CVE-2023-48788: A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiClientEMS version 72024-03-12
GHSA
GHSA-fv47-jg3j-5qf6: A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiClientEMS version 72024-03-12
VulnCheck
Fortinet FortiClient EMS SQL Injection Vulnerability2023

💥Exploits & PoCs

1
Nuclei
Fortinet Forticlient Endpoint Management Server - SQL Injection

🔍Detection Rules

1
Suricata
ET EXPLOIT Fortinet FortiClient EMS SQL Injection (CVE-2023-48788)2024-12-19

📋Vendor Advisories

2
CISA
Fortinet FortiClient EMS SQL Injection Vulnerability2024-03-25
Fortinet
A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiClientEMS versio...2024-03-12

🕵️Threat Intelligence

2
Bleepingcomputer
Exploit released for Fortinet RCE bug used in attacks, patch now2024-03-21
Bleepingcomputer
Fortinet warns of critical RCE bug in endpoint management software2024-03-13
CVE-2023-48788 — SQL Injection in Fortinet | cvebase