Fortinet FortiTester 7.2.3

CPE Details

Fortinet FortiTester 7.2.3
7.2.3
2023-12-16
02h37 +00:00
2023-12-16
02h37 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:fortinet:fortitester:7.2.3:*:*:*:*:*:*:*

Informations

Vendor

fortinet

Product

fortitester

Version

7.2.3

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-40716 2023-12-13 06h44 +00:00 An improper neutralization of special elements used in an OS command vulnerability [CWE-78]  in the command line interpreter of FortiTester 2.3.0 through 7.2.3 may allow an authenticated attacker to execute unauthorized commands via specifically crafted arguments when running execute restore/backup .
7.8
High
CVE-2023-40715 2023-09-13 12h29 +00:00 A cleartext storage of sensitive information vulnerability [CWE-312] in FortiTester 2.3.0 through 7.2.3 may allow an attacker with access to the DB contents to retrieve the plaintext password of external servers configured in the device.
5.5
Medium
CVE-2023-40717 2023-09-13 12h29 +00:00 A use of hard-coded credentials vulnerability [CWE-798] in FortiTester 2.3.0 through 7.2.3 may allow an attacker who managed to get a shell on the device to access the database via shell commands.
7.8
High
CVE-2023-36642 2023-09-13 12h29 +00:00 An improper neutralization of special elements used in an OS command vulnerability [CWE-78] in the management interface of FortiTester 3.0.0 through 7.2.3 may allow an authenticated attacker to execute unauthorized commands via specifically crafted arguments to existing commands.
7.8
High