Security Advisory

CVE-2022-42477

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-04-11 16:06:17
Last updated 2024-10-23 14:29:14
Assigner fortinet
State PUBLISHED

Description

An improper input validation vulnerability [CWE-20] in FortiAnalyzer version 7.2.1 and below, version 7.0.6 and below, 6.4 all versions may allow an authenticated attacker to disclose file system information via custom dataset SQL queries.