Multiple authenticated SQL injection via extraParam

0
9

CVSSv3 Score: 6.8

An improper neutralization of special elements used in an SQL command (‘SQL injection’) [CWE-89] in FortiVoice may allow an authenticated privileged attacker to execute unauthorized code or commands via crafted requests.

Revised on 2025-12-09 00:00:00

– Read more