CVE-2024-46662
published 2025-03-14CVE-2024-46662: A improper neutralization of special elements used in a command ('command injection') in Fortinet FortiManager versions 7.4.1 through 7.4.3, FortiManager Cloud…
PriorityP260high8.8CVSS 3.1
AVNACLPRLUINSUCHIHAH
EPSS
2.08%
79.4th percentile
A improper neutralization of special elements used in a command ('command injection') in Fortinet FortiManager versions 7.4.1 through 7.4.3, FortiManager Cloud versions 7.4.1 through 7.4.3 allows attacker to escalation of privilege via specifically crafted packets
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| fortinet | fortimanager | — | — |
| fortinet | fortimanager | >= 7.4.1 < 7.4.4 | 7.4.4 |
| fortinet | fortimanager | 7.4.1 – 7.4.3 | — |
| fortinet | fortimanager_cloud | >= 7.4.1 < 7.4.4 | 7.4.4 |
| fortinet | fortimanagercloud | — | — |
| fortinet | fortinet | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Target the csfd daemon in FortiManager for command injection activity; monitor for anomalous privilege escalation originating from the csfd process ↗
- →Inspect network traffic for specially crafted packets targeting FortiManager versions 7.4.1 through 7.4.3 that may exploit command injection in the csfd daemon to escalate privileges ↗
- ·Vulnerability is limited to FortiManager and FortiManager Cloud versions 7.4.1 through 7.4.3 only; other versions are not affected per the advisory ↗
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Fortinet
Command injection in csfd daemon
vendor_fortinet·2025-03-14·CVSS 8.8
CVE-2024-46662 [HIGH] CWE-77 Command injection in csfd daemon
FG-IR-24-222: Command injection in csfd daemon
A improper neutralization of special elements used in a command ('command injection') in Fortinet FortiManager versions 7.4.1 through 7.4.3, FortiManager Cloud versions 7.4.1 through 7.4.3 allows attacker to escalation of privilege via specifically crafted packets
CVEs: CVE-2024-46662
CWEs: CWE-77
CVSS: 8.8 (high)
Affected products: FortiManager, FortiManagercloud, Fortinet
GHSA
GHSA-4887-x38j-8gfg: A improper neutralization of special elements used in a command ('command injection') in Fortinet FortiManager versions 7
ghsa_unreviewed·2025-03-14
CVE-2024-46662 [HIGH] CWE-77 GHSA-4887-x38j-8gfg: A improper neutralization of special elements used in a command ('command injection') in Fortinet FortiManager versions 7
A improper neutralization of special elements used in a command ('command injection') in Fortinet FortiManager versions 7.4.1 through 7.4.3, FortiManager Cloud versions 7.4.1 through 7.4.3 allows attacker to escalation of privilege via specifically crafted packets
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-03-14
Published