High severity8.8NVD Advisory· Published Mar 11, 2025· Updated Jun 17, 2026
CVE-2024-55590
CVE-2024-55590
Description
Multiple improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerabilities [CWE-78] in Fortinet FortiIsolator version 2.4.0 through 2.4.5 allows an authenticated attacker with at least read-only admin permission and CLI access to execute unauthorized code via specifically crafted CLI commands.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:fortinet:fortiisolator:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:fortinet:fortiisolator:*:*:*:*:*:*:*:*range: >=2.4.0,<2.4.6
- (no CPE)range: 2.4.0-2.4.5
- (no CPE)range: 2.4.0
Patches
Vulnerability mechanics
References
1- fortiguard.fortinet.com/psirt/FG-IR-24-178nvdVendor Advisory
News mentions
0No linked articles in our index yet.