A external control of file name or path in Fortinet FortiNAC versions 9.4.0, 9.2.0 through 9.2.5, 9.1.0 through 9.1.7, 8.8.0 through 8.8.11, 8.7.0 through 8.7.6, 8.6.0 through 8.6.5, 8.5.0 through 8.5.4, 8.3.7 may allow an unauthenticated attacker to execute unauthorized code or commands via specifically crafted HTTP request.
PoC: CVE-2022-39952
POC for CVE-2022-39952
PoC: CVE-2022-39952
CVE-2022-39952 Unauthenticated RCE in Fortinet FortiNAC
PoC: CVE-2022-39952
PoC for CVE-2022-39952 affecting Fortinet FortiNAC.
PoC: CVE-2022-39952_webshell
Write Behinder_webshell to target using CVE-2022-39952
PoC: CVE-2022-39952-better
PoC for CVE-2022-39952 affecting Fortinet FortiNAC.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Get alerted for CVEs like this
Register your stack and get notified within minutes when a matching CVE drops.
Start monitoring free