Loading HuntDB...

GHSA-vhrf-7c9m-v558

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

A local privilege escalation and local code execution vulnerability in Fortinet FortiOS 5.6.0 to 5.6.2, 5.4.0 to 5.4.8, and 5.2 and below versions allows attacker to execute unauthorized binary program contained on an USB drive plugged into a FortiGate via linking the aforementioned binary program to a command that is allowed to be run by the fnsysctl CLI command.

Related CVEs

Key Information

GHSA ID
GHSA-vhrf-7c9m-v558
Published
May 13, 2022 1:43 AM
Last Modified
May 13, 2022 1:43 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: November 26, 2025 6:30 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.