An Incorrect Provision of Specified Functionality vulnerability [CWE-684] in FortiOS 7.6.0, 7.4.0 through 7.4.5, 7.2.5 through 7.2.10, 7.0.0 through 7.0.15, 6.4 all versions may allow a local authenticated attacker to execute system commands via crafted CLI commands.
The code does not function according to its published specifications, potentially leading to incorrect usage.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fortios | Fortinet | 6.4.0 (including) | 7.0.16 (excluding) |
Fortios | Fortinet | 7.2.0 (including) | 7.2.11 (excluding) |
Fortios | Fortinet | 7.4.0 (including) | 7.4.6 (excluding) |
Fortios | Fortinet | 7.6.0 (including) | 7.6.0 (including) |