Metrics
Affected Vendors & Products
Wed, 15 Apr 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | SQL Injection in FortiClientEMS Enables Unauthorized Code Execution |
Tue, 14 Apr 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs |
Mon, 13 Apr 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
ssvc
|
ssvc
|
Mon, 13 Apr 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
kev
|
Mon, 30 Mar 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
| |
| Metrics |
ssvc
|
ssvc
|
Tue, 17 Feb 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:fortinet:forticlientems:*:*:*:*:*:*:*:* |
Fri, 06 Feb 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 06 Feb 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An improper neutralization of special elements used in an sql command ('sql injection') vulnerability in Fortinet FortiClientEMS 7.4.4 may allow an unauthenticated attacker to execute unauthorized code or commands via specifically crafted HTTP requests. | |
| First Time appeared |
Fortinet
Fortinet forticlientems |
|
| Weaknesses | CWE-89 | |
| CPEs | cpe:2.3:a:fortinet:forticlientems:7.4.4:*:*:*:*:*:*:* | |
| Vendors & Products |
Fortinet
Fortinet forticlientems |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: fortinet
Published: 2026-02-06T08:24:43.877Z
Updated: 2026-04-14T03:55:26.806Z
Reserved: 2026-01-02T08:41:26.514Z
Link: CVE-2026-21643
Updated: 2026-02-06T14:53:24.618Z
Status : Analyzed
Published: 2026-02-06T09:15:49.330
Modified: 2026-04-14T14:21:18.670
Link: CVE-2026-21643
No data.