High severity7.0NVD Advisory· Published Sep 6, 2022· Updated Jun 17, 2026
CVE-2022-30298
CVE-2022-30298
Description
An improper privilege management vulnerability [CWE-269] in Fortinet FortiSOAR before 7.2.1 allows a GUI user who has already found a way to modify system files (via another, unrelated and hypothetical exploit) to execute arbitrary Python commands as root.
Affected products
4Patches
Vulnerability mechanics
References
1- fortiguard.com/psirt/FG-IR-22-152nvdVendor Advisory
News mentions
0No linked articles in our index yet.