CVE-2023-48788

Vulnerability updated 5 months ago (2024-11-29T14:28:47.146Z)
Download STIX
Preview STIX
CVE-2023-48788 is a critical SQL injection vulnerability discovered in Fortinet's FortiClient Enterprise Management Server (EMS) software. The flaw, resulting from an improper neutralization of special elements used in SQL, could potentially allow an attacker to execute arbitrary commands on the system. Fortinet has since addressed this issue and implemented a fix to ensure the security of their EMS solution. The discovery and resolution of CVE-2023-48788 have drawn significant attention from various parties. Horizon3's Attack Team announced plans to publish technical details and a proof-of-concept (PoC) exploit for the vulnerability within a week of the fix. Concurrently, there were attempts to sell a PoC for the same vulnerability for less than $300 via GitHub, raising concerns about potential misuse of the information. As of March 14, 2024, the vulnerability has been fixed by Fortinet. However, the situation underscores the importance of vigilance and prompt action in addressing software vulnerabilities. With technical details and PoCs potentially circulating, users of Fortinet's FortiClient EMS software are strongly advised to ensure they have applied the latest updates to mitigate any risk associated with CVE-2023-48788.
Description last updated: 2024-11-15T16:19:33.942Z
What's your take? (Question 1 of 3)
Help tune the shared Cybergeist dataset, assist your peers, and earn karma. Expand the panel to get started.
Aliases We are not currently tracking any aliases
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Vulnerability
Exploit
Fortinet
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Associated Vulnerabilities
To see the evidence that has resulted in these vulnerability associations, create a free account
Alias DescriptionAssociation TypeVotes
The CVE-2024-1709 Vulnerability is associated with CVE-2023-48788. CVE-2024-1709 is a critical vulnerability in the ConnectWise ScreenConnect software that allows for an authentication bypass. This flaw can enable a remote non-authenticated attacker to bypass the system's authentication process and gain full access. The issue was identified by Sophos Rapid ResponseUnspecified
2
Source Document References
Information about the CVE-2023-48788 Vulnerability was read from the documents corpus below. This display is limited to 20 results, create a free account to see more
PreviewSource LinkCreatedAtTitle
InfoSecurity-magazine
a month ago
CISA
a month ago
Securelist
a month ago
DARKReading
2 months ago
Securelist
4 months ago
CERT-EU
a year ago
CISA
8 months ago
CERT-EU
a year ago
CERT-EU
a year ago
Securityaffairs
a year ago
DARKReading
a year ago
Securityaffairs
a year ago
CISA
a year ago
Securityaffairs
a year ago
Securityaffairs
a year ago
CERT-EU
a year ago
CERT-EU
a year ago
CERT-EU
a year ago
DARKReading
a year ago
BankInfoSecurity
a year ago