VYPR
Critical severity9.8CISA KEVNVD Advisory· Published Mar 12, 2024· Updated Jun 17, 2026

CVE-2023-48788

CVE-2023-48788

Description

A improper neutralization of special elements used in an sql command ('sql injection') in Fortinet FortiClientEMS version 7.2.0 through 7.2.2, FortiClientEMS 7.0.1 through 7.0.10 allows attacker to execute unauthorized code or commands via specially crafted packets.

Affected products

3

Patches

Vulnerability mechanics

References

2

News mentions

3