VYPR

FortiSOAR Connector

by Fortinet

CVEs (2)

  • CVE-2024-21760HigMar 18, 2025
    risk 0.55cvss 8.4epss 0.01

    An improper control of generation of code ('Code Injection') vulnerability [CWE-94] in FortiSOAR Connector FortiSOAR 7.4 all versions, 7.3 all versions, 7.2 all versions, 7.0 all versions, 6.4 all versions may allow an authenticated attacker to execute arbitrary code on the…

  • CVE-2024-48890MedJan 14, 2025
    risk 0.43cvss 6.6epss 0.01

    An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in FortiSOAR IMAP connector version 3.5.7 and below may allow an authenticated attacker to execute unauthorized code or commands via a specifically crafted…