Fortinet FortiWeb - CLI 中的 OS 命令插入弱點 (FG-IR-22-186)

high Nessus Plugin ID 174265

版本 1.2

May 22, 2024, 3:18 PM

  • Detection (updated detection logic)

Plugin Feed: 202405221518

版本 1.1

Apr 19, 2023, 4:23 PM

  • CVSS metrics ("CVSSv2 score" changed from 6.5 to 6.8. "CVSSv2 score" changed from 6.5 to 6.8. "CVSSv2 vector" changed from "CVSS2#AV:L/AC:L/Au:M/C:C/I:C/A:C" to "CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C". "CVSSv3 vector" changed from "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" to "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H". "CVSSv3 score" changed from 6.7 to 7.8. "CVSSv2 vector" changed from "CVSS2#AV:L/AC:L/Au:M/C:C/I:C/A:C" to "CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C". "CVSSv3 vector" changed from "CVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H" to "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H". "CVSSv3 score" changed from 6.7 to 7.8. "CVSSv2 vector" changed from "CVSS2#AV:L/AC:L/Au:M/C:C/I:C/A:C" to "CVSS2#AV:L/AC:L/Au:S/C:C/I:C/A:C")
  • CVSSv3 score source (set to "CVE-2022-43948")
  • CVSSv3 severity (based on CVE-2022-43948, severity increased from "Medium" to "High")

Plugin Feed: 202304191623

版本 1.0

Apr 13, 2023, 8:16 PM

  • New

Plugin Feed: 202304132016

* Changelogs are generally available for changes made after Nov 1, 2022