Fortinet FortiClientEMS
cpe:2.3:a:fortinet:forticlientems:*:*:*:*:*:*:*
- 7.4.4
This vulnerability is being actively exploited in the wild.
A SQL injection vulnerability has been identified in Fortinet FortiClientEMS version 7.4.4. This vulnerability arises from improper neutralization of special elements used in SQL commands, potentially allowing an unauthenticated attacker to execute unauthorized code or commands by sending specifically crafted HTTP requests.
Exploitation of this vulnerability could lead to unauthorized code execution on the server where Fortinet FortiClientEMS is running.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.