VYPR
High severity8.4NVD Advisory· Published Mar 18, 2025· Updated Jun 17, 2026

CVE-2024-21760

CVE-2024-21760

Description

An improper control of generation of code ('Code Injection') vulnerability [CWE-94] in FortiSOAR Connector FortiSOAR 7.4 all versions, 7.3 all versions, 7.2 all versions, 7.0 all versions, 6.4 all versions may allow an authenticated attacker to execute arbitrary code on the host via a playbook code snippet.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:a:fortinet:fortisoar:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:fortinet:fortisoar:*:*:*:*:*:*:*:*range: >=6.4.0,<=7.4.5
    • cpe:2.3:a:fortinet:fortisoar:7.4.5:*:*:*:*:*:*:*range: 7.4.0
    • (no CPE)range: all versions <= 7.4
  • Range: all versions <= 7.4

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.