Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
Rewterz penetration testing services help organizations determine if a cyber attacker can gain access to their critical assets while giving them detailed insights of the overall business impact of a cyber attack.
Before Rewterz got its start, the market was in dire need of a specialized and dedicated information security company. It was nearly impossible for businesses to find a trustworthy provider that could truly cover all of their bases. We wanted to meet this need, giving companies across the globe a chance to get ahead while knowing that their data is in good hands.
High
CVE-2023-26210 CVSS:7.8
Fortinet FortiADC and FortiADC Manager could allow a local authenticated attacker to execute arbitrary code on the system, caused by an OS command injection flaw. By sending specially crafted CLI requests, an attacker could exploit this vulnerability to execute arbitrary shell code as root user.
CVE-2023-28000 CVSS:6.7
Fortinet FortiADC could allow a local authenticated attacker to execute arbitrary commands on the system, caused by an OS command injection flaw in the CLI. By sending specially crafted arguments in diagnose system df CLI command, an attacker could exploit this vulnerability to execute arbitrary commands on the system.
Fortinet
Upgrade to the latest version of FortiOS, available from the Fortinet Web site.