Critical severity9.6NVD Advisory· Published Mar 12, 2024· Updated Jun 17, 2026
CVE-2023-47534
CVE-2023-47534
Description
A improper neutralization of formula elements in a csv file in Fortinet FortiClientEMS version 7.2.0 through 7.2.2, 7.0.0 through 7.0.10, 6.4.0 through 6.4.9, 6.2.0 through 6.2.9, 6.0.0 through 6.0.8 allows attacker to execute unauthorized code or commands via specially crafted packets.
Affected products
3- cpe:2.3:a:fortinet:forticlient_endpoint_management_server:*:*:*:*:*:*:*:*Range: >=6.0.0,<=6.0.8
7.2.0 through 7.2.2, 7.0.0 through 7.0.10, 6.4.0 through 6.4.9, 6.2.0 through 6.2.9, 6.0.0 through 6.0.8+ 1 more
- (no CPE)range: 7.2.0 through 7.2.2, 7.0.0 through 7.0.10, 6.4.0 through 6.4.9, 6.2.0 through 6.2.9, 6.0.0 through 6.0.8
- (no CPE)range: 7.2.0
Patches
Vulnerability mechanics
References
1- fortiguard.com/psirt/FG-IR-23-390nvdVendor Advisory
News mentions
0No linked articles in our index yet.