An improper handling of syntactically invalid structure in Fortinet FortiWeb at least vesrions 7.4.0 through 7.4.6 and 7.2.0 through 7.2.10 and 7.0.0 through 7.0.10 allows attacker to execute unauthorized code or commands via HTTP/S crafted requests.
References
| Link | Resource |
|---|---|
| https://fortiguard.fortinet.com/psirt/FG-IR-23-115 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2025-03-14 17:15
Updated : 2025-07-24 20:14
NVD link : CVE-2024-55594
Mitre link : CVE-2024-55594
CVE.ORG link : CVE-2024-55594
JSON object : View
Products Affected
fortinet
- fortiweb
CWE
CWE-228
Improper Handling of Syntactically Invalid Structure
