Loading market data...
← Back to CVE feed

CVE-2026-39809

MEDIUM CVSS 6.7 View on NVD ↗

Description

A improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS 7.4.0 through 7.4.5, FortiClientEMS 7.2.0 through 7.2.12, FortiClientEMS 7.0 all versions may allow attacker to execute unauthorized code or commands via sending crafted requests

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Published: Apr 14, 2026 16:16 UTC Modified: Apr 14, 2026 18:17 UTC